CVE-2023-53734
HIGHdawa-pharma-1.0 - SQL Injection
Title source: llmDescription
dawa-pharma-1.0 allows unauthenticated attackers to execute SQL queries on the server, allowing them to access sensitive information and potentially gain administrative access.
Exploits (1)
References (5)
Scores
CVSS v4
8.7
EPSS
0.0031
EPSS Percentile
54.0%
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Details
CWE
CWE-89
Status
published
Products (1)
mayurik/dawa-pharma
1.0-2022
Published
Dec 04, 2025
Tracked Since
Feb 18, 2026