Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2023-27742 — IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login. | Kitploit
Tools/GitHubGitHub/g37sys73m/cve-2023-27742
Vulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingDatabase Security
GitHubg37sys73m/cve-2023-27742

CVE-2023-27742

IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.

View Repository
23 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2023-27742

IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.

Description

IDURAR ERP/CRM v1 was discovered to contain a SQL injection vulnerability via the component /api/login.


Vulnerability Type

SQL Injection


Vendor of Product

IDURAR ERP/CRM v1


Affected Product Code Base

https://github.com/idurar/erp-crm - version 1


Attack Type

Remote


Impact Escalation of Privileges

true


Attack Vectors

Use the expression {"$ne":null} in the email keypair in the /api/login request


Discoverer

Soummya Mukhopadhyay @G37SYS73M

Download Tool