First published: Fri Jul 23 2021(Updated: )
SQL injection vulnerability in Learning Management System v 1.0 allows remote attackers to execute arbitrary SQL statements through the id parameter to obtain sensitive database information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Itsourcecode Learning Management System Project | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25201 is a SQL injection vulnerability in Learning Management System v 1.0 that allows remote attackers to execute arbitrary SQL statements.
CVE-2021-25201 allows remote attackers to obtain sensitive database information by executing arbitrary SQL statements.
CVE-2021-25201 is classified as a high severity vulnerability with a severity score of 7.5.
To fix CVE-2021-25201, you should apply the necessary patches or updates provided by the vendor of the Learning Management System.
More information about CVE-2021-25201 can be found at the following reference: [GitHub - TCSWT/Learning-Management-System](https://github.com/TCSWT/Learning-Management-System/blob/main/README.md)