CVE-2023-49658
- EPSS 0.07%
- Veröffentlicht 04.01.2024 14:15:40
- Zuletzt bearbeitet 21.11.2024 08:33:40
Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'bank_details' parameter of the party_submit.php resource does not validate the characters received and they are sent unfiltered to the database.
CVE-2023-49665
- EPSS 0.07%
- Veröffentlicht 04.01.2024 14:15:40
- Zuletzt bearbeitet 21.11.2024 08:33:40
Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'quantity[]' parameter of the submit_delivery_list.php resource does not validate the characters received and they are sent unfiltered to the database....
CVE-2023-49622
- EPSS 0.07%
- Veröffentlicht 04.01.2024 14:15:39
- Zuletzt bearbeitet 21.11.2024 08:33:38
Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'itemnameid' parameter of the material_bill.php?action=itemRelation resource does not validate the characters received and they are sent unfiltered to ...
CVE-2023-49624
- EPSS 0.07%
- Veröffentlicht 04.01.2024 14:15:39
- Zuletzt bearbeitet 21.11.2024 08:33:39
Billing Software v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'cancelid' parameter of the material_bill.php resource does not validate the characters received and they are sent unfiltered to the database.