An issue was discovered in Online Reviewer Management System v1.0. There is a SQL injection that can directly issue instructions to the background database system via reviewer_0/admins/assessments/course/course-update.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2023-02-28T00:00:00
Updated: 2024-08-02T11:18:36.241Z
Reserved: 2023-02-06T00:00:00
Link: CVE-2023-25432
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-02-28T18:15:10.450
Modified: 2023-03-06T19:46:49.457
Link: CVE-2023-25432
Redhat
No data.