Skip to content

Instantly share code, notes, and snippets.

@Northind
Created May 8, 2024 02:46
Show Gist options
  • Save Northind/97522a49ae4bb0c8e6e2a49e75fd637a to your computer and use it in GitHub Desktop.
Save Northind/97522a49ae4bb0c8e6e2a49e75fd637a to your computer and use it in GitHub Desktop.
CVE-2023-29881
[CVE ID]
CVE-2023-29881
[Suggested description]
phpok 6.4.003 is vulnerable to SQL injection in the function index_f()
in phpok64/framework/api/call_control.php
[Vulnerability Type]
SQL Injection
[Vendor of Product]
https://github.com/qinggan/phpok
[Affected Product Code Base]
phpok - 6.4.003
[Affected Component]
https://github.com/qinggan/phpok/issues/15
[Attack Type]
Remote
[Impact Escalation of Privileges]
true
[Impact Information Disclosure]
true
[Attack Vectors]
https://github.com/qinggan/phpok/issues/15
[Reference]
https://github.com/qinggan/phpok/issues/15
[Discoverer]
Individual: northind
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment