PT-2025-51142 · Unknown · Simple Attendance Record System
Yuancoffee
·
Published
2025-12-14
·
Updated
2025-12-19
·
Yuancoffee
·
Published
2025-12-14
·
Updated
2025-12-19
·
9.8
Critical
| Base vector | Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
student argument in the /check.php file can lead to SQL injection. This issue affects an unknown function within the file. Remote exploitation is possible, and details about the exploit have been publicly released./check.php file.Exploit
Fix
SQL injection
Special Elements Injection