PT-2022-26315 · Sourcecodester · Sourcecodester Canteen Management System

Sanc

·

Published

2022-11-30

·

Updated

2022-12-02

·

CVE-2022-4222

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SourceCodester Canteen Management System (affected versions not specified)
Description A critical issue affects the function query of the file ajax invoice.php of the component POST Request Handler. The manipulation of the argument search leads to sql injection. The attack may be initiated remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Neutralization

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-4222

Affected Products

Sourcecodester Canteen Management System