在 kishor-23 food-waste-management-system(版本标识:411989e3ecb82895e53dca7865f72145f03d7d93/b3a70b2c492dc9904de5be1ad9389bd79b87f82c)中发现了一个安全弱点。该问题影响了用户注册端点中 signup.php 文件的某些未知处理逻辑。通过对参数 email/name/gender 进行恶意操纵,可能导致 SQL 注入攻击。该漏洞可从远程触发利用。目前相关 exploit 已公开,可能被攻击者用于实施
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| kishor-23 | food-waste-management-system | 411989e3ecb82895e53dca7865f72145f03d7d93 |
cpe:2.3:a:kishor-23:food-waste-management-system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105231 | 7.3 HIGH | kishor-23 food-waste-management-system Admin Registration signup.php sql injection |
| CVE-2026-105230 | 7.3 HIGH | kishor-23 food-waste-management-system deliverymyord.php sql injection |
| CVE-2026-105232 | 7.3 HIGH | kishor-23 food-waste-management-system Registration deliverysignup.php sql injection |
| CVE-2026-105233 | 6.3 MEDIUM | kishor-23 food-waste-management-system Login Flow login.php session fixiation |
No comments yet