A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/sales/index.php. The manipulation of the argument date_start/date_end leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-225340.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: VulDB

Published: 2023-04-08T09:31:03.689Z

Updated: 2024-02-13T07:50:05.171Z

Reserved: 2023-04-08T06:29:38.092Z


Link: CVE-2023-1953

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-04-08T10:15:06.977

Modified: 2024-05-17T02:18:34.910


Link: CVE-2023-1953

JSON object: View

cve-icon Redhat Information

No data.

CWE