Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-50863
HistoryJan 04, 2024 - 3:15 p.m.

Sql injection

2024-01-0415:15:00
PRIOn knowledge base
www.prio-n.com
3
sql injection
unauthenticated
travel website v1.0
generatereceipt.php
database

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

33.0%

Travel Website v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The ‘hotelIDHidden’ parameter of the generateReceipt.php resource does not validate the characters received and they are sent unfiltered to the database.

CPENameOperatorVersion
travel_websiteeq1.0

8.6 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

33.0%

Related for PRION:CVE-2023-50863