A vulnerability was found in Zhong Bang CRMEB Java 1.3.4. It has been classified as critical. This affects an unknown part of the file /api/admin/system/store/order/list. The manipulation of the argument keywords leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-222261 was assigned to this vulnerability.
References
Link Resource
https://github.com/ha1yuYiqiyinHangzhouTechn0logy/crmeb_java/blob/main/README.md Exploit Third Party Advisory
https://vuldb.com/?ctiid.222261 Permissions Required Third Party Advisory VDB Entry
https://vuldb.com/?id.222261 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2023-03-03T07:00:49.188Z

Updated: 2023-10-21T07:27:07.448Z

Reserved: 2023-03-03T07:00:35.058Z


Link: CVE-2023-1165

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-03-03T08:15:12.613

Modified: 2024-05-17T02:17:51.870


Link: CVE-2023-1165

JSON object: View

cve-icon Redhat Information

No data.

CWE