A vulnerability has been found in lahirudanushka School Management System 1.0.0/1.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file subject.php of the component Subject Page. The manipulation of the argument update leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-269491.
History

Mon, 09 Sep 2024 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Lahirudanushka
Lahirudanushka school Management System
CPEs cpe:2.3:a:lahirudanushka:school_management_system:1.0.1:*:*:*:*:*:*:*
Vendors & Products Lahirudanushka
Lahirudanushka school Management System

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-06-24T02:31:04.878Z

Updated: 2024-08-01T21:33:05.248Z

Reserved: 2024-06-23T18:59:40.377Z

Link: CVE-2024-6278

cve-icon Vulnrichment

Updated: 2024-08-01T21:33:05.248Z

cve-icon NVD

Status : Analyzed

Published: 2024-06-24T03:15:10.290

Modified: 2024-09-09T17:20:52.050

Link: CVE-2024-6278

cve-icon Redhat

No data.