No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-53583 | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the loginCheck.php resource does not validate the characters received and they are sent unfiltered to the database. |
Tue, 13 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 May 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'username' parameter of the loginCheck.php resource does not validate the characters received and they are sent unfiltered to the database. | |
| Title | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Fluid Attacks
Published:
Updated: 2025-05-13T14:07:46.752Z
Reserved: 2023-11-28T15:05:55.679Z
Link: CVE-2023-49641
Updated: 2025-05-13T14:07:43.368Z
Status : Deferred
Published: 2025-05-13T00:15:17.770
Modified: 2026-06-17T06:36:15.963
Link: CVE-2023-49641
No data.
OpenCVE Enrichment
No data.
-
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
EUVD