Headline
CVE-2023-43381: CVE-2023-43381
SQL Injection vulnerability in Tianchoy Blog v.1.8.8 allows a remote attacker to obtain sensitive information via the id parameter in the login.php
[CVE ID]
CVE-2023-43381
[PRODUCT]
https://github.com/tianchoy/blog
[VERSION]
v1.8.8
[PROBLEM TYPE]
SQL Injection
[DESCRIPTION]
SQL Injection exists in tianchoy/blog through 2018-06-19 via the user parameter to login.php.