Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-11427
HistoryAug 04, 2022 - 12:00 a.m.

Pharmacy Management System editcategory.php SQL Injection Vulnerability

2022-08-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
pharmacy management system
sql injection
editcategory.php
validation
mayuri k
security vulnerability
database theft

EPSS

0.002

Percentile

54.5%

Pharmacy Management System (MPMS) is a multilingual pharmacy management system from the personal developer Mayuri K. A SQL injection vulnerability exists in Pharmacy Management System v1.0, which stems from a lack of validation of the id parameter in editcategory.php against external input SQL statement validation. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

EPSS

0.002

Percentile

54.5%

Related for CNVD-2023-11427