CVE-2023-38916

SQL Injection vulnerability in eVotingSystem-PHP v.1.0 allows a remote attacker to execute arbitrary code and obtain sensitive information via the user input fields.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mohammad-ajazuddin:evotingsystem-php:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 08:14

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de SQL Injection en eVotingSystem-PHP v.1.0 permite a un atacante remoto ejecutar código arbitrario y obtener información sensible a través de los campos de entrada del usuario.
References () https://github.com/Mohammad-Ajazuddin/eVotingSytem-PHP/issues/1 - Exploit, Issue Tracking () https://github.com/Mohammad-Ajazuddin/eVotingSytem-PHP/issues/1 - Exploit, Issue Tracking

Information

Published : 2023-08-15 17:15

Updated : 2024-11-21 08:14


NVD link : CVE-2023-38916

Mitre link : CVE-2023-38916

CVE.ORG link : CVE-2023-38916


JSON object : View

Products Affected

mohammad-ajazuddin

  • evotingsystem-php
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')