SourceCodester Online Computer and Laptop Store products.php sql injection
CVE-2023-5374
9.8CRITICAL
What is CVE-2023-5374?
A significant SQL injection vulnerability has been discovered in the products.php file of the Online Computer and Laptop Store application. This flaw allows attackers to manipulate the input argument 'c', enabling them to execute unauthorized SQL code on the database. The vulnerability is exploitable remotely, facilitating potential data breaches and unauthorized access to sensitive information. It is crucial for users of the impacted version to take immediate action to secure their systems against possible exploits.
Affected Version(s)
Online Computer and Laptop Store 1.0