CVE

CVE-2023-43014

CVE-2023-43014

Asset Management System v1.0 is vulnerable to

an Authenticated SQL Injection vulnerability

on the ‘first_name’ and ‘last_name’ parameters

of user.php page, allowing an authenticated

attacker to dump all the contents of the database

contents.

Source: CVE-2023-43014

Exit mobile version