Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-11435
HistoryAug 04, 2022 - 12:00 a.m.

Pharmacy Management System login.php SQL Injection Vulnerability

2022-08-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
pharmacy management system
sql injection
vulnerability
login.php
validation
sensitive data
database
attack
sql commands
mayuri k.

EPSS

0.002

Percentile

54.2%

Pharmacy Management System (MPMS) is a multilingual pharmacy management system from the personal developer Mayuri K. A SQL injection vulnerability exists in Pharmacy Management System v1.0, which stems from the electronic email and password in login.php Lack of validation of externally entered SQL statements. An attacker could use the vulnerability to execute illegal SQL commands to steal sensitive database data.

EPSS

0.002

Percentile

54.2%

Related for CNVD-2023-11435