PT-2022-27877 · Unknown · Mesinkasir Bangresto

Yuyudhn

·

Published

2022-12-14

·

Updated

2023-02-13

·

CVE-2022-46443

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions mesinkasir Bangresto version 1.0
Description The issue is related to SQL Injection via the itemqty%5B%5D parameter. This allows for potential exploitation.
Recommendations For mesinkasir Bangresto version 1.0, consider restricting access to the itemqty%5B%5D parameter to minimize the risk of exploitation until a patch is available.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-46443

Affected Products

Mesinkasir Bangresto