CVE-2023-49665
EUVD-2023-5360104.01.2024, 14:15
Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'quantity[]' parameter of the submit_delivery_list.php resource does not validate the characters received and they are sent unfiltered to the database.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| kashipara | billing_software | 1.0 |
𝑥
= Vulnerable software versions