SQL Injection Vulnerability in Maid Hiring Management System by PHP Guru Kul
CVE-2023-37688

4.8MEDIUM

Key Information:

Vendor
PHPgurukul
Vendor
CVE Published:
8 August 2023

Summary

The Maid Hiring Management System version 1.0 is susceptible to a SQL injection vulnerability through its Admin page. This security flaw can allow an attacker to manipulate SQL queries, potentially leading to unauthorized access to sensitive data or the complete compromise of the application. It is crucial for users of this system to implement security measures and apply necessary patches to mitigate the risks associated with this vulnerability. For further details, refer to related resources provided by PHP Guru Kul.

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.