9.8
CVSSv3

CVE-2023-49639

Published: 04/01/2024 Updated: 10/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'customer_details' parameter of the buyer_invoice_submit.php resource does not validate the characters received and they are sent unfiltered to the database.

Vulnerable Product Search on Vulmon Subscribe to Product

kashipara billing software 1.0