Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-99650
HistoryNov 08, 2021 - 12:00 a.m.

Sourcecodester Engineers Online Portal SQL Injection Vulnerability (CNVD-2021-99650)

2021-11-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
sourcecodester engineers online portal
sql injection
vulnerability
php
sensitive data
web server
sql injection
announces_student.php
remote code execution

EPSS

0.014

Percentile

86.8%

Sourcecodester Engineers Online Portal is an open source online portal. Sourcecodester Engineers Online Portal in PHP is vulnerable to SQL injection, which can be exploited by attackers to extract sensitive data from the web server via the announces_student.php id parameter of announces_student.php to extract sensitive data from the web server and, in some cases, remotely execute code.

EPSS

0.014

Percentile

86.8%

Related for CNVD-2021-99650