Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-06521
HistoryJan 17, 2023 - 12:00 a.m.

Online Food Ordering System SQL Injection Vulnerability (CNVD-2023-06521)

2023-01-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
13
online food ordering
sql injection
vulnerability
cnvd-2023-06521
login page
database security
external input validation

EPSS

0.002

Percentile

55.3%

Online Food Ordering System is an online food ordering system. an SQL injection vulnerability exists in Online Food Ordering System, which originates from the missing Username parameter in the file /fos/admin/ajax.php? action = login on the component’s login page. validation of external input SQL statements, which can be exploited to execute illegal SQL commands to steal sensitive database data.

EPSS

0.002

Percentile

55.3%

Related for CNVD-2023-06521