VDB
CVE-2023-4845
CVE-2023-4845
PUBLISHED
CVSS 6.5 MEDIUM
A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file account_edit_query.php. The manipulation of the argument admin_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-239254 is the identifier assigned to this vulnerability.
EPSS 0.74% · 53.0th percentile
Risk Scores
CVSS 2.0
6.5
EPSS Score
0.74%
53.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| razormist | simple_membership_system | 1.0, 1.0 |
| SourceCodester | Simple Membership System | 1.0, 1.0 |
Timeline
- Sep 9, 2023 EPSS Score
- Sep 9, 2023 CVE Published
- Sep 9, 2023 CVE Updated
- Sep 9, 2023 PoC Published
- Oct 12, 2023 EPSS Score
- Nov 14, 2023 EPSS Score
- Dec 17, 2023 EPSS Score
- Jan 20, 2024 EPSS Score
- Feb 22, 2024 EPSS Score
- Mar 26, 2024 EPSS Score
- Apr 28, 2024 EPSS Score
- May 31, 2024 EPSS Score