CVE-2023-7138 | code-projects Client Details System 1.0 HTTP POST Request /admin Username sql injection
A vulnerability labeled as critical has been found in code-projects Client Details System 1.0. Affected by this issue is some unknown functionality of the file /admin of the component HTTP POST Request Handler. Such manipulation of the argument Username leads to sql injection.
This vulnerability is referenced as CVE-2023-7138. The attack needs to be initiated within the local network. Furthermore, an exploit is available.