216.73.216.6

CVE-2023-53877

· Published 15/12/2025 21:15 · Modified 18/12/2025 22:36

Labels: CVE-2023-53877 2025-12-15CVE-2023-53877[email protected]

Essential information

Published
15/12/2025 21:15
Modified
18/12/2025 22:36
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
phpjabbers / bus reservation system cpe:2.3:a:phpjabbers:bus_reservation_system:1.1:*:*:*:*:*:*:*

References