Threats Tagged 'cve-2023-36338'
View all threats tagged with 'cve-2023-36338'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2023-36338'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2023-36338 is a medium-severity SQL injection vulnerability found in Inventory Management System 1. It allows unauthenticated remote attackers to inject SQL queries due to improper input sanitization. The vulnerability impacts confidentiality but not integrity or availability, and no user interaction or privileges are required. No known exploits are currently reported in the wild, and no patches have been published yet. European organizations using this inventory system may face data leakage risks. Mitigation requires immediate input validation and use of parameterized queries. Countries with significant manufacturing and logistics sectors using this software are at higher risk. The vulnerability’s CVSS score is 5.3, reflecting moderate risk primarily from data exposure. Defenders should prioritize detection of suspicious database queries and restrict external access to the affected system until patched. Join the discussion | CVE Database V5 | 12/15/2025, 00:00:00 UTC Added: 12/15/2025, 21:00:34 UTC |
Showing 1 to 1 of 1 result