ZeroHour

CVE-2023-43739

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p55
Published
()
Modified
Description

The 'bookisbn' parameter of the cart.php resource does not validate the characters received and they are sent unfiltered to the database.

Vendors
online book store project project
Products
online book store project
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.