High severity7.5NVD Advisory· Published Oct 11, 2023· Updated Jun 17, 2026
CVE-2023-44961
CVE-2023-44961
Description
SQL Injection vulnerability in Koha Library Software 23.0.5.04 and before allows a remote attacker to obtain sensitive information via the intranet/cgi bin/cataloging/ysearch.pl. component.
Affected products
3- cpe:2.3:a:koha-community:koha_library_software:*:*:*:*:*:*:*:*Range: <=23.05.04
- Koha Library Software/Koha Library Softwaredescription
- Range: <=23.0.5.04
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.