daojian1/Simple-Pizza-Ordering-System_V1.0_003

daojian1/Simple-Pizza-Ordering-System_V1.0_003

Releases0
Simple Pizza Ordering System V1.0 listorder.php SQL injection

CVE History

CVEPublishedCVSS v3CVSS v2
7.3 HIGH7.5 HIGH

A security flaw has been discovered in code-projects Simple Pizza Ordering System 1.0. Affected is an unknown function of the file /listorder.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited.