CVE-2023-45338
02.11.2023, 15:15
Online Food Ordering System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'id' parameter of the routers/add-ticket.php resource does not validate the characters received and they are sent unfiltered to the database.
Vendor | Product | Version |
---|---|---|
projectworlds | online_food_ordering_script | 1.0 |
𝑥
= Vulnerable software versions