SQL Injection Vulnerability in BP Monitoring Management System by Bhavesh Kush
CVE-2023-27074
9.8CRITICAL
Key Information:
- Vendor
PHPgurukul
- Vendor
- CVE Published:
- 14 March 2023
What is CVE-2023-27074?
A SQL injection vulnerability has been identified in the login functionality of BP Monitoring Management System v1.0, allowing attackers to manipulate the 'emailid' parameter. This weakness could enable unauthorized access or data breach, highlighting the need for immediate remediation to protect sensitive data.