CVE-2023-7177
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Dec 30, 2023
Updated: May 17, 2024
CWE ID 89
Summary
CVE-2023-7177 is a critical vulnerability affecting the Campcodes Online College Library System 1.0. The issue lies in the manipulation of the argument "category" in the file /admin/book_add.php within the HTTP POST Request Handler component. This defect results in SQL injection, exposing the system to remote attacks. Public disclosure of the exploit heightens the risk, as malicious actors may already be exploiting it. The vulnerability identifier is VDB-249364.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.