PT-2024-32902 · Tecnick · Tcexam

Guy Hayou

·

Published

2024-12-30

·

Updated

2025-01-04

·

CVE-2024-47926

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tecnick TCExam (affected versions not specified)
Description The issue is related to improper neutralization of special elements used in an SQL command, also known as SQL Injection. This occurs because special elements in an SQL command are not properly neutralized, allowing for potential exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2024-47926

Affected Products

Tcexam