Critical severity9.8NVD Advisory· Published Aug 9, 2023· Updated Jun 17, 2026
CVE-2023-37068
CVE-2023-37068
Description
Code-Projects Gym Management System V1.0 allows remote attackers to execute arbitrary SQL commands via the login form, leading to unauthorized access and potential data manipulation. This vulnerability arises due to insufficient validation of user-supplied input in the username and password fields, enabling SQL Injection attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:sherlock:gym_management_system:1.0:*:*:*:*:*:*:*
- Range: 1.0
Patches
Vulnerability mechanics
References
2- github.com/Mr-Secure-Code/My-CVE/blob/main/CVE-2023-37068-Exploit.mdnvdExploitThird Party Advisory
- github.com/riteshs4hu/My-CVE/blob/main/CVE-2023-37068-Exploit.mdnvd
News mentions
0No linked articles in our index yet.