{"dataType":"CVE_RECORD","dataVersion":"5.1","cveMetadata":{"cveId":"CVE-2023-0982","assignerOrgId":"1af790b2-7ee1-4545-860a-a788eba489b5","state":"PUBLISHED","assignerShortName":"VulDB","dateReserved":"2023-02-23T11:05:42.977Z","datePublished":"2023-02-23T11:06:22.755Z","dateUpdated":"2024-08-02T05:32:46.390Z"},"containers":{"cna":{"providerMetadata":{"orgId":"1af790b2-7ee1-4545-860a-a788eba489b5","shortName":"VulDB","dateUpdated":"2023-10-20T21:49:25.529Z"},"title":"SourceCodester Yoga Class Registration System Add Class Entry sql injection","problemTypes":[{"descriptions":[{"type":"CWE","cweId":"CWE-89","lang":"en","description":"CWE-89 SQL Injection"}]}],"affected":[{"vendor":"SourceCodester","product":"Yoga Class Registration System","versions":[{"version":"1.0","status":"affected"}],"modules":["Add Class Entry"]}],"descriptions":[{"lang":"en","value":"A vulnerability was found in SourceCodester Yoga Class Registration System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Add Class Entry. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The identifier VDB-221677 was assigned to this vulnerability."},{"lang":"de","value":"In SourceCodester Yoga Class Registration System 1.0 wurde eine kritische Schwachstelle ausgemacht. Betroffen ist eine unbekannte Verarbeitung der Komponente Add Class Entry. Mittels dem Manipulieren des Arguments id mit unbekannten Daten kann eine sql injection-Schwachstelle ausgenutzt werden. Der Angriff kann über das Netzwerk passieren."}],"metrics":[{"cvssV3_1":{"version":"3.1","baseScore":6.3,"vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","baseSeverity":"MEDIUM"}},{"cvssV3_0":{"version":"3.0","baseScore":6.3,"vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","baseSeverity":"MEDIUM"}},{"cvssV2_0":{"version":"2.0","baseScore":6.5,"vectorString":"AV:N/AC:L/Au:S/C:P/I:P/A:P"}}],"timeline":[{"time":"2023-02-23T00:00:00.000Z","lang":"en","value":"Advisory disclosed"},{"time":"2023-02-23T00:00:00.000Z","lang":"en","value":"CVE reserved"},{"time":"2023-02-23T01:00:00.000Z","lang":"en","value":"VulDB entry created"},{"time":"2023-03-24T12:23:44.000Z","lang":"en","value":"VulDB entry last update"}],"credits":[{"lang":"en","value":"mroz1l (VulDB User)","type":"analyst"}],"references":[{"url":"https://vuldb.com/?id.221677","tags":["vdb-entry","technical-description"]},{"url":"https://vuldb.com/?ctiid.221677","tags":["signature"]}]},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-02T05:32:46.390Z"},"title":"CVE Program Container","references":[{"url":"https://vuldb.com/?id.221677","tags":["vdb-entry","technical-description","x_transferred"]},{"url":"https://vuldb.com/?ctiid.221677","tags":["signature","x_transferred"]}]}]}}