CVE-2023-2205
גבוהה 7.5
תיאור (מקור, אנגלית)
A vulnerability was found in Campcodes Retro Basketball Shoes Online Store 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /function/login.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-226970 is the identifier assigned to this vulnerability.
מדדים
- CVSS 3.1
-
7.5 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-11/8/2026
- CWE
- CWE-89
מוצרים מושפעים
campcodes: retro basketball shoes online store
קישורים
- https://github.com/E1CHO/cve_hub/blob/main/Retro%20Basketball%20Shoes%20Online… ExploitThird Party Advisory
- https://github.com/E1CHO/cve_hub/blob/main/Retro%20Basketball%20Shoes%20Online… ExploitThird Party Advisory
- https://vuldb.com/?ctiid.226970 Permissions RequiredThird Party Advisory
- https://vuldb.com/?id.226970 Third Party Advisory
- https://vuldb.com/?ctiid.226970 Permissions RequiredThird Party Advisory
- https://vuldb.com/?id.226970 Third Party Advisory