Online Food Ordering System SQL Injection Vulnerability in Login Form

Vulnerability

A SQL injection vulnerability has been identified in the login form of Online Food Ordering System version 1.0. This vulnerability allows attackers to inject malicious SQL queries by exploiting the input fields for username and password, bypassing authentication and gaining unauthorized access.

Impact

Exploitation of this vulnerability allows for SQL injection, which can be used to manipulate the database, potentially leading to unauthorized data access or modification.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
5.0
exploitability
6.8
remediation
0.0
relevance
0.0
threat
6.4
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.