๐Ÿ” CVE Alert

CVE-2023-49544

MEDIUM 4.9
CVSS Score
4.9
EPSS Score
0.0%
EPSS Percentile
0th

A local file inclusion (LFI) in Customer Support System v1 allows attackers to include internal PHP files and gain unauthorized acces via manipulation of the page= parameter at /customer_support/index.php.

Vendor n/a
Product n/a
Published Mar 1, 2024
Last Updated Aug 2, 2024
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new medium vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
sourcecodester.com: https://www.sourcecodester.com/php/14587/customer-support-system-using-phpmysqli-source-code.html owasp.org: https://owasp.org/www-project-web-security-testing-guide/v42/4-Web_Application_Security_Testing/07-Input_Validation_Testing/11.1-Testing_for_Local_File_Inclusion github.com: https://github.com/geraldoalcantara/CVE-2023-49544