First published: Thu Mar 03 2022(Updated: )
OS4ED openSIS 8.0 is affected by SQL injection in ChooseCpSearch.php, ChooseRequestSearch.php. An attacker can inject a SQL query to extract information from the database.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OS4Ed OpenSIS | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2021-40635.
The severity of CVE-2021-40635 is high with a CVSS score of 7.5.
CVE-2021-40635 affects OS4ED openSIS 8.0.
CVE-2021-40635 allows an attacker to perform SQL injection and extract information from the database.
The vendor or developer of OS4ED openSIS should release a patch or update to fix the SQL injection vulnerability.