CVE-2023-41594

Dairy Farm Shop Management System Using PHP and MySQL v1.1 was discovered to contain multiple SQL injection vulnerabilities in the Login function via the Username and Password parameters.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.1:*:*:*:*:*:*:*

History

21 Nov 2024, 08:21

Type Values Removed Values Added
References () https://github.com/MATRIXDEVIL/CVE/blob/main/CVE-2023-41594 - Exploit () https://github.com/MATRIXDEVIL/CVE/blob/main/CVE-2023-41594 - Exploit
References () https://portswigger.net/web-security/sql-injection - Technical Description () https://portswigger.net/web-security/sql-injection - Technical Description
References () https://www.acunetix.com/vulnerabilities/web/sql-injection/ - Technical Description () https://www.acunetix.com/vulnerabilities/web/sql-injection/ - Technical Description

04 Oct 2023, 17:36

Type Values Removed Values Added
First Time Phpgurukul
Phpgurukul dairy Farm Shop Management System
CPE cpe:2.3:a:dairy_farm_shop_management_system_project:dairy_farm_shop_management_system:1.1:*:*:*:*:*:*:* cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.1:*:*:*:*:*:*:*

12 Sep 2023, 13:00

Type Values Removed Values Added
CWE CWE-89
First Time Dairy Farm Shop Management System Project
Dairy Farm Shop Management System Project dairy Farm Shop Management System
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://www.acunetix.com/vulnerabilities/web/sql-injection/ - (MISC) https://www.acunetix.com/vulnerabilities/web/sql-injection/ - Technical Description
References (MISC) https://portswigger.net/web-security/sql-injection - (MISC) https://portswigger.net/web-security/sql-injection - Technical Description
References (MISC) https://github.com/MATRIXDEVIL/CVE/blob/main/CVE-2023-41594 - (MISC) https://github.com/MATRIXDEVIL/CVE/blob/main/CVE-2023-41594 - Exploit
CPE cpe:2.3:a:dairy_farm_shop_management_system_project:dairy_farm_shop_management_system:1.1:*:*:*:*:*:*:*

08 Sep 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-09-08 03:15

Updated : 2024-11-21 08:21


NVD link : CVE-2023-41594

Mitre link : CVE-2023-41594

CVE.ORG link : CVE-2023-41594


JSON object : View

Products Affected

phpgurukul

  • dairy_farm_shop_management_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')