Metrics
Affected Vendors & Products
Thu, 03 Apr 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codeastro
Codeastro online Food Ordering System |
|
| CPEs | cpe:2.3:a:codeastro:online_food_ordering_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Codeastro
Codeastro online Food Ordering System |
Tue, 31 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 31 Dec 2024 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in CodeAstro Online Food Ordering System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/update_users.php of the component Update User Page. The manipulation of the argument user_upd leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | CodeAstro Online Food Ordering System Update User Page update_users.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-12-31T14:31:05.847Z
Updated: 2024-12-31T14:53:56.238Z
Reserved: 2024-12-31T08:42:10.223Z
Link: CVE-2024-13070
Updated: 2024-12-31T14:53:42.814Z
Status : Analyzed
Published: 2024-12-31T15:15:07.853
Modified: 2025-04-03T16:29:20.227
Link: CVE-2024-13070
No data.