SQL Injection Vulnerability in Fruits Bazar v1.0 via recover_email Parameter
CVE-2022-34989 · CRITICAL Severity
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Fruits Bazar v1.0 was discovered to contain a SQL injection vulnerability via the recover_email parameter at user_password_recover.php.
Learn more about our Cis Benchmark Audit For Microsoft Sql Server.