PT-2025-32289 · Unknown · Attendance Management System

Published

2025-08-07

·

Updated

2025-08-12

·

CVE-2023-41521

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Student Attendance Management System version 1
Description The Student Attendance Management System is susceptible to multiple SQL injection flaws within the createSessionTerm.php file. These flaws are present through the id, termId, and sessionName parameters.
Recommendations Sanitize the id, termId, and sessionName parameters in the createSessionTerm.php file to prevent SQL injection attacks.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2023-41521

Affected Products

Attendance Management System