SourceCodester Earnings and Expense Tracker App manage_user.php sql injection
CVE-2023-1785
9.8CRITICAL
What is CVE-2023-1785?
A vulnerability exists in the Earnings and Expense Tracker App by SourceCodester, specifically within the manage_user.php file. This issue arises from improper handling of the 'id' argument, which makes the application susceptible to SQL injection attacks. Attackers can exploit this vulnerability remotely, potentially allowing them to manipulate the database and access sensitive information. It's crucial for users of version 1.0 to apply security measures or patches to mitigate the risk associated with this vulnerability.
Affected Version(s)
Earnings and Expense Tracker App 1.0