Online Matrimonial Project v1.0 - Multiple Unauthenticated SQL Injections (SQLi)
CVE-2023-46785
9.8CRITICAL
What is CVE-2023-46785?
The Online Matrimonial Project version 1.0 is vulnerable to multiple unauthenticated SQL Injection issues. Specifically, the 'id' parameter in the partner_preference.php file lacks proper validation, allowing attackers to inject unfiltered input directly into database queries. This vulnerability can lead to unauthorized access to sensitive data and may compromise the integrity of the database.
Affected Version(s)
Online Matrimonial Project 1.0