A SQL injection vulnerability in /model/get_exam.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
Metrics
Affected Vendors & Products
References
History
Tue, 12 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-89 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-12T18:12:20.279Z
Reserved:
Link: CVE-2024-33803
Vulnrichment
Updated: 2024-08-02T02:36:04.598Z
NVD
Status : Awaiting Analysis
Published: 2024-05-28T16:15:16.413
Modified: 2024-11-12T19:35:08.007
Link: CVE-2024-33803
Redhat
No data.