Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-65139
HistoryAug 03, 2023 - 12:00 a.m.

Simple Online Mens Salon Management System SQL Injection Vulnerability (CNVD-2023-65139)

2023-08-0300:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
sql injection
mens salon management
open source
vulnerability
external input
sql commands
sensitive database data
security issue

0.001 Low

EPSS

Percentile

40.6%

Simple Online Mens Salon Management System is open source a men’s salon management system . Simple Online Mens Salon Management System v1.0 version of the SQL injection vulnerability, the vulnerability stems from the file /admin/?page=user/manage_user &id=3 parameter id lack of validation of external input SQL statements. An attacker can exploit this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.001 Low

EPSS

Percentile

40.6%

Related for CNVD-2023-65139