Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2023-43014
Disclosure Date: September 28, 2023 (last updated October 08, 2023)
Asset Management System v1.0 is vulnerable to
an Authenticated SQL Injection vulnerability
on the 'first_name' and 'last_name' parameters
of user.php page, allowing an authenticated
attacker to dump all the contents of the database
contents.
0
Attacker Value
Unknown
CVE-2023-43013
Disclosure Date: September 28, 2023 (last updated October 08, 2023)
Asset Management System v1.0 is vulnerable to an
unauthenticated SQL Injection vulnerability on the
'email' parameter of index.php page, allowing an
external attacker to dump all the contents of the
database contents and bypass the login control.
0
Attacker Value
Unknown
CVE-2023-43144
Disclosure Date: September 22, 2023 (last updated October 08, 2023)
Projectworldsl Assets-management-system-in-php 1.0 is vulnerable to SQL Injection via the "id" parameter in delete.php.
0