A vulnerability was found in code-projects Online Exam Mastering System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /update.php?q=quiz&step=2. The manipulation of the argument eid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Sun, 22 Dec 2024 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in code-projects Online Exam Mastering System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /update.php?q=quiz&step=2. The manipulation of the argument eid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
Title | code-projects Online Exam Mastering System update.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-12-22T06:00:11.940Z
Updated: 2024-12-22T06:00:11.940Z
Reserved: 2024-12-21T09:00:32.189Z
Link: CVE-2024-12890
Vulnrichment
No data.
NVD
Status : Received
Published: 2024-12-22T06:15:05.390
Modified: 2024-12-22T06:15:05.390
Link: CVE-2024-12890
Redhat
No data.