CVE-2023-0686 | SourceCodester Online Eyewear Shop 1.0 HTTP POST Request Master.php update_cart cart_id sql injection
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. This affects the function update_cart of the file /oews/classes/Master.php?f=update_cart of the component HTTP POST Request Handler. The manipulation of the argument cart_id leads to sql injection.
This vulnerability is uniquely identified as CVE-2023-0686. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.