PT-2022-17849 · Unknown · Sourcecodester Online Admission System

Gdianq

+1

·

Published

2022-08-04

·

Updated

2022-08-08

·

CVE-2022-2644

CVSS v3.1

5.5

Medium

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions SourceCodester Online Admission System (affected versions not specified)
Description A critical issue affects the component GET Parameter Handler in the SourceCodester Online Admission System. The manipulation of the eid argument leads to SQL injection. The exploit has been disclosed to the public and may be used.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2022-2644

Affected Products

Sourcecodester Online Admission System