PT-2023-27131 · Unknown · Damn Vulnerable Web Application

Published

2023-08-15

·

Updated

2024-05-21

·

CVE-2023-39848

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Damn Vulnerable Web Application (DVWA) version 1.0
Description The issue is related to a SQL injection vulnerability via the id parameter at blindsourcehigh.php. This vulnerability was discovered in DVWA v1.0. There are approximately 731 people who have DVWA exposed to the internet.
Recommendations For DVWA version 1.0, consider temporarily removing it from the internet until a patch is available. As a temporary workaround, consider restricting access to the blindsourcehigh.php file or disabling the id parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2023-39848

Affected Products

Damn Vulnerable Web Application