Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-58222
HistoryJul 24, 2021 - 12:00 a.m.

PHPGurukul Student Record System SQL Injection Vulnerability (CNVD-2022-58222)

2021-07-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
phpgurukul
sql injection
version 4.0
validation
external input
edit-std.php
remote attackers
arbitrary sql statements
cnvd-2022-58222

EPSS

0.049

Percentile

92.9%

PHPGurukul Student Record System is an application that is vulnerable to SQL injection in version 4.0 of the PHPGurukul Student Record System. The vulnerability stems from a lack of validation of external input SQL statements in the id parameter of edit-std.php, which can be exploited by remote attackers to execute arbitrary SQL statements.

EPSS

0.049

Percentile

92.9%

Related for CNVD-2022-58222