github.comexploit
https://github.com/tht1997/CVE_2023/blob/main/Lost%20and%20Found%20Information%20System/CVE-2023-2669.md CVE-2023-2669
MEDIUM
SourceCodester Lost and Found Information System GET Parameter sql injection
Record summary
CVE-2023-2669 has a selected CVSS score of 6.3 (medium).
Description
A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been classified as critical. This affects an unknown part of the file admin/?page=categories/view_category of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-228885 was assigned to this vulnerability.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Lost and Found Information SystemBrowse SourceCodester / Lost and Found Information System | CVE List | 1.0 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-2669 vuldb.comsignature
https://vuldb.com/?ctiid.228885 vuldb.comvdb entryTechnical description
https://vuldb.com/?id.228885