← All CVEs

CVE-2023-50071

high · 8.8

Sourcecodester Customer Support System 1.0 has multiple SQL injection vulnerabilities in /customer_support/ajax.php?action=save_department via id or name.

8.8
CVSS
13.8%
EPSS (exploit prob.)
96th
EPSS percentile
2023-12-29
Published

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-89

Affected products

VendorProductAffected versions
customer_support_system_projectcustomer_support_system1.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2023-50071