Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-99654
HistoryNov 08, 2021 - 12:00 a.m.

Sourcecodester Engineers Online Portal SQL Injection Vulnerability (CNVD-2021-99654)

2021-11-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
sourcecodester engineers online portal
sql injection
php
vulnerability
sensitive data
web server
remote code execution

EPSS

0.038

Percentile

91.9%

Sourcecodester Engineers Online Portal is an open source online portal. sourcecodester Engineers Online Portal in PHP is vulnerable to SQL injection. An attacker can exploit the vulnerability to extract sensitive data from the web server via the id parameter of quiz_question.php and, in some cases, remotely execute code.

EPSS

0.038

Percentile

91.9%

Related for CNVD-2021-99654