CVE-2023-5272
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Sep 29, 2023
Updated: Dec 23, 2024
Summary
CVE-2023-5272 is a critical vulnerability identified in the SourceCodester Best Courier Management System 1.0. The issue lies within the file edit_parcel.php, specifically in the GET Parameter Handler. An attacker can exploit this vulnerability by manipulating the argument id, which leads to SQL injection. The exploit for this vulnerability has been made public, increasing the risk for potential attacks. Vulnerability database VDB has assigned the identifier VDB-240885 to this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- GhostScript
Affected Vendors
- Artifex