Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'address' parameter of the routers/add-users.php resource does not validate the characters received and they are sent unfiltered to the database.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Fluid Attacks
Published: 2023-11-02T13:12:58.449Z
Updated: 2024-09-17T13:10:39.856Z
Reserved: 2023-10-06T21:35:59.764Z
Link: CVE-2023-45325
Vulnrichment
Updated: 2024-08-02T20:21:16.381Z
NVD
Status : Modified
Published: 2023-11-02T14:15:11.707
Modified: 2024-11-21T08:26:45.103
Link: CVE-2023-45325
Redhat
No data.