NA

CVE-2023-45344

Published: 02/11/2023 Updated: 09/11/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The '*_balance' parameter of the routers/user-router.php resource does not validate the characters received and they are sent unfiltered to the database.

Vulnerable Product Search on Vulmon Subscribe to Product

projectworlds online food ordering system 1.0