Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-87956
HistoryOct 10, 2022 - 12:00 a.m.

Web-Based Student Clearance System SQL Injection Vulnerability

2022-10-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
web-based student clearance system
sql injection
ndueso okorie
validation
admin login
sensitive data
database

0.002 Low

EPSS

Percentile

54.0%

Web-Based Student Clearance System is a web-based student clearance system from the personal developer Ndueso Okorie.A SQL injection vulnerability exists in Web-Based Student Clearance System, which stems from the lack of validation of external input SQL statements in the parameter txtusername in Admin/login.php. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

0.002 Low

EPSS

Percentile

54.0%

Related for CNVD-2022-87956