CVE-2023-44267
PoC —CVSS 3.1
9.8 critical
EPSS
<1%p51
Published
()
Modified
Description
Online Art Gallery v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'lnm' parameter of the header.php resource does not validate the characters received and they are sent unfiltered to the database.
- Vendors
- projectworlds
- Products
- online art gallery
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.