CVE-2023-7139 | code-projects Client Details System 1.0 HTTP POST Request /admin/regester.php fname/lname/email/contact sql injection
A vulnerability marked as critical has been reported in code-projects Client Details System 1.0. This affects an unknown part of the file /admin/regester.php of the component HTTP POST Request Handler. Performing manipulation of the argument fname/lname/email/contact results in sql injection.
This vulnerability is identified as CVE-2023-7139. The attack can only be performed from the local network. Additionally, an exploit exists.