SourceCodester Online Eyewear Shop sql injection
CVE-2023-0673
What is CVE-2023-0673?
A significant vulnerability was identified in SourceCodester's Online Eyewear Shop version 1.0, specifically within the product view feature. This vulnerability arises from improper handling of the 'id' parameter within the URL path oews/?p=products/view_product.php, allowing attackers to perform SQL injection attacks. Remote attackers can exploit this weakness to manipulate database queries by injecting malicious SQL code. Although the complexity of successfully executing this attack is relatively high, potential security ramifications necessitate immediate attention from users and administrators of the affected product.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Online Eyewear Shop 1.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
