PT-2022-18439 · Sourcecodester · Sourcecodester Simple Online Book Store System

Qidian

·

Published

2022-08-11

·

Updated

2022-08-15

·

CVE-2022-2747

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions SourceCodester Simple Online Book Store (affected versions not specified)
Description A critical issue was found in the processing of the file book.php, where the manipulation of the book isbn argument leads to SQL injection. The attack can be initiated remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-2747

Affected Products

Sourcecodester Simple Online Book Store System