Sourcecodester Online Market Place Site v1.0 suffers from an unauthenticated blind SQL Injection Vulnerability allowing remote attackers to dump the SQL database via time-based SQL injection..
References
Link | Resource |
---|---|
https://www.sourcecodester.com/php/15273/online-market-place-site-phpoop-free-source-code.html | Product |
https://packetstormsecurity.com/files/168249/Online-Market-Place-Site-1.0-SQL-Injection.html | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-09-26 13:15
Updated : 2022-09-28 10:03
NVD link : CVE-2022-30004
Mitre link : CVE-2022-30004
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
online_market_place_site_project
- online_market_place_site