A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /fos/admin/ajax.php?action=login of the component Login Page. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-218184.

Project Subscriptions

Vendors Products
Oretnom23 Subscribe
Online Food Ordering System Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-12337 A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /fos/admin/ajax.php?action=login of the component Login Page. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-218184.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 30 Mar 2026 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Oretnom23
Oretnom23 online Food Ordering System
CPEs cpe:2.3:a:online_food_ordering_system_project:online_food_ordering_system:2.0:*:*:*:*:*:*:* cpe:2.3:a:oretnom23:online_food_ordering_system:2.0:*:*:*:*:*:*:*
Vendors & Products Online Food Ordering System Project
Online Food Ordering System Project online Food Ordering System
Oretnom23
Oretnom23 online Food Ordering System

Tue, 08 Apr 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2025-04-08T18:11:38.981Z

Reserved: 2023-01-12T21:02:25.399Z

Link: CVE-2023-0256

cve-icon Vulnrichment

Updated: 2024-08-02T05:02:44.130Z

cve-icon NVD

Status : Modified

Published: 2023-01-12T22:15:09.670

Modified: 2026-03-30T18:15:59.940

Link: CVE-2023-0256

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses