momo1239/CVE-2023-24203-and-CVE-2023-24204

momo1239/CVE-2023-24203-and-CVE-2023-24204

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
5.4 MEDIUM

SQL injection vulnerability in SourceCodester Simple Customer Relationship Management System v1.0 allows attacker to execute arbitrary code via the name parameter in get-quote.php.

5.4 MEDIUM

Cross Site Scripting vulnerability in SourceCodester Simple Customer Relationship Management System v1.0 allows attacker to execute arbitary code via the company or query parameter(s).