CVE-2023-29881

phpok 6.4.003 is vulnerable to SQL injection in the function index_f() in phpok64/framework/api/call_control.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpok:phpok:6.4.003:*:*:*:*:*:*:*

History

13 Jun 2025, 12:59

Type Values Removed Values Added
References () https://gist.github.com/Northind/97522a49ae4bb0c8e6e2a49e75fd637a - () https://gist.github.com/Northind/97522a49ae4bb0c8e6e2a49e75fd637a - Third Party Advisory
References () https://github.com/qinggan/phpok/issues/15 - () https://github.com/qinggan/phpok/issues/15 - Exploit, Issue Tracking
First Time Phpok
Phpok phpok
CPE cpe:2.3:a:phpok:phpok:6.4.003:*:*:*:*:*:*:*

21 Nov 2024, 07:57

Type Values Removed Values Added
References () https://gist.github.com/Northind/97522a49ae4bb0c8e6e2a49e75fd637a - () https://gist.github.com/Northind/97522a49ae4bb0c8e6e2a49e75fd637a -
References () https://github.com/qinggan/phpok/issues/15 - () https://github.com/qinggan/phpok/issues/15 -

19 Aug 2024, 19:35

Type Values Removed Values Added
CWE CWE-89
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
Summary
  • (es) phpok 6.4.003 es vulnerable a la inyección SQL en la función index_f() en phpok64/framework/api/call_control.php.

14 May 2024, 12:55

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-14 12:55

Updated : 2025-06-13 12:59


NVD link : CVE-2023-29881

Mitre link : CVE-2023-29881

CVE.ORG link : CVE-2023-29881


JSON object : View

Products Affected

phpok

  • phpok
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')