CVE-2023-0281

CVSS V2 None CVSS V3 None
Description
A vulnerability was found in SourceCodester Online Flight Booking Management System. It has been rated as critical. Affected by this issue is some unknown functionality of the file judge_panel.php. The manipulation of the argument subevent_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-218276.
Overview
  • CVE ID
  • CVE-2023-0281
  • Assigner
  • cna@vuldb.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-13T10:15:09
  • Last Modified Date
  • 2023-01-20T07:22:17
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:online_flight_booking_management_system_project:online_flight_booking_management_system:-:*:*:*:*:*:*:* 1 OR
History
Created Old Value New Value Data Type Notes
2023-01-13 11:15:14 Added to TrackCVE
2023-01-13 11:15:15 Weakness Enumeration new
2023-01-13 14:14:49 2023-01-13T14:01:26 CVE Modified Date updated
2023-01-13 14:14:49 Received Awaiting Analysis Vulnerability Status updated
2023-01-13 14:14:51 CVSS V3 information new
2023-01-13 14:14:51 CVSS V2 information new
2023-01-19 20:14:09 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-19 20:14:12 CVSS V3 information new
2023-01-19 20:14:12 CVSS V2 information new
2023-01-20 08:14:05 2023-01-20T07:22:17 CVE Modified Date updated
2023-01-20 08:14:05 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-20 08:14:08 CPE Information updated
2023-01-20 08:14:08 CVSS V3 information new
2023-01-20 08:14:08 CVSS V2 information new