Student Result Management System v1.0 is vulnerable to multiple Unauthenticated SQL Injection vulnerabilities. The 'password' parameter of the login.php resource does not validate the characters received and they are sent unfiltered to the database.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Fluid Attacks
Published: 2023-12-21T21:00:42.981Z
Updated: 2024-08-02T21:37:54.653Z
Reserved: 2023-11-17T22:29:30.959Z
Link: CVE-2023-48720
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-12-21T21:15:12.870
Modified: 2024-11-21T08:32:19.687
Link: CVE-2023-48720
Redhat
No data.