A vulnerability has been found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file subject.php of the component Subject Page. The manipulation of the argument update leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-269491.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47398 | A vulnerability has been found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file subject.php of the component Subject Page. The manipulation of the argument update leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-269491. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 09 Sep 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lahirudanushka
Lahirudanushka school Management System |
|
| CPEs | cpe:2.3:a:lahirudanushka:school_management_system:1.0.1:*:*:*:*:*:*:* | |
| Vendors & Products |
Lahirudanushka
Lahirudanushka school Management System |
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-01T21:33:05.248Z
Reserved: 2024-06-23T18:59:40.377Z
Link: CVE-2024-6278
Updated: 2024-08-01T21:33:05.248Z
Status : Modified
Published: 2024-06-24T03:15:10.290
Modified: 2024-11-21T09:49:20.287
Link: CVE-2024-6278
No data.
OpenCVE Enrichment
No data.
EUVD