CVE-2023-45996

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
31/10/2023
Last modified:
08/11/2023

Description

SQL injection vulnerability in Senayan Library Management Systems Slims v.9 and Bulian v.9.6.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted script to the reborrowLimit parameter in the member_type.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:slims:senayan_library_management_system:9.0:*:*:*:*:*:*:*
cpe:2.3:a:slims:senayan_library_management_system_bulian:9.6.1:*:*:*:*:*:*:*