Vulnerabilities > CVE-2023-0997 - Unspecified vulnerability in Moosikay E-Commerce System Project Moosikay E-Commerce System 1.0

047910
CVSS 8.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
moosikay-e-commerce-system-project

Summary

A vulnerability was found in SourceCodester Moosikay E-Commerce System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /Moosikay/order.php of the component POST Parameter Handler. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-221732.

Vulnerable Configurations

Part Description Count
Application
Moosikay_E-Commerce_System_Project
1