SQL Injection Vulnerability in Food Order and Table Reservation System by APTX-4879
CVE-2022-30481
9.8CRITICAL
Key Information:
- Vendor
- CVE Published:
- 31 May 2022
What is CVE-2022-30481?
The Food Order and Table Reservation System version 1.0 is susceptible to SQL Injection attacks through the 'catid' parameter in the categorywise-menu.php file. This flaw allows an attacker to manipulate SQL queries, potentially leading to unauthorized data access, data exposure, or even compromise of the underlying database. It is crucial for users of this application to apply necessary security patches or updates to mitigate this vulnerability.
