Multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_department in Customer Support System 1.0 allow authenticated attackers to execute arbitrary SQL commands via id or name.
CVE-2023-50071
Customer Support System 10 - Multiple SQL injection vulnerabilities - save_department
Description: Multiple SQL injection vulnerabilities in /customer_support/ajaxphp?action=save_department in Customer Support System 10 allow authenticated attackers to execute arbitrary SQL commands via id or name
Vulnerable Product Version: Customer Support System 1