CVE-2023-31752

SourceCodester Employee and Visitor Gate Pass Logging System v1.0 is vulnerable to SQL Injection via /employee_gatepass/classes/Login.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:*

History

17 Jan 2025, 21:15

Type Values Removed Values Added
References (MISC) https://github.com/4O4NtFd/bug_report/blob/main/SQLI2/SQLi-2.md - Exploit () https://github.com/4O4NtFd/bug_report/blob/main/SQLI2/SQLi-2.md - Exploit

07 Sep 2024, 12:56

Type Values Removed Values Added
First Time Oretnom23
Oretnom23 employee And Visitor Gate Pass Logging System
CPE cpe:2.3:a:employee_and_visitor_gate_pass_logging_system_project:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:* cpe:2.3:a:oretnom23:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:*

30 May 2023, 17:32

Type Values Removed Values Added
First Time Employee And Visitor Gate Pass Logging System Project employee And Visitor Gate Pass Logging System
Employee And Visitor Gate Pass Logging System Project
References (MISC) https://github.com/4O4NtFd/bug_report/blob/main/SQLI2/SQLi-2.md - (MISC) https://github.com/4O4NtFd/bug_report/blob/main/SQLI2/SQLi-2.md - Exploit
CPE cpe:2.3:a:employee_and_visitor_gate_pass_logging_system_project:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:*
CWE CWE-89
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

23 May 2023, 20:48

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-23 20:15

Updated : 2025-01-17 21:15


NVD link : CVE-2023-31752

Mitre link : CVE-2023-31752


JSON object : View

Products Affected

oretnom23

  • employee_and_visitor_gate_pass_logging_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')