ZeroHour

CVE-2023-1735

CVSS 3.1
9.8 critical
EPSS
<1%p41
Published
()
Modified
Description

A vulnerability classified as critical was found in SourceCodester Young Entrepreneur E-Negosyo System 1.0. Affected by this vulnerability is an unknown functionality of the file passwordrecover.php. The manipulation of the argument phonenumber leads to sql injection. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-224623.

Vendors
young entrepreneur e-negosyo system project
Products
young entrepreneur e-negosyo system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.