PT-2025-51316 · Unknown · Inventory Management System 1

Published

2025-12-15

·

Updated

2025-12-21

·

CVE-2023-36338

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Inventory Management System 1 (affected versions not specified)
Description The Inventory Management System 1 software contains a SQL injection flaw. This issue could allow an attacker to manipulate database queries through crafted input. The vulnerability exists due to insufficient sanitization of user-supplied data before it is used in a SQL query. The vulnerable component is susceptible to injection attacks via a crafted payload.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2023-36338

Affected Products

Inventory Management System 1