Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A SQL Injection vulnerability exists in SourceCodester Online Food Ordering System v1.0 in the Actions.php file (specifically the save_user action). The application fails to properly sanitize user input supplied to the "username" parameter. This allows an authenticated attacker to inject malicious SQL commands.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SourceCodester Online Food Ordering System 安全漏洞
Vulnerability Description
SourceCodester Online Food Ordering System是SourceCodester开源的一个在线订餐系统。 SourceCodester Online Food Ordering System v1.0版本存在安全漏洞,该漏洞源于Actions.php文件的save_user操作未对用户名参数进行正确清理,可能导致SQL注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A