Fiche vulnérabilité
CVE-2023-2677 : faille élevée covid-19 contact tracing system… (CVSS 8.8)
Description
A vulnerability, which was classified as critical, was found in SourceCodester Covid-19 Contact Tracing System 1.0. This affects an unknown part of the file admin/establishment/manage.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-228891.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 12 mai 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- covid-19 contact tracing system project covid-19 contact tracing system