CVE-2021-41659: SQL Injection
Published Jan 24, 2022
·Updated
SQL injection vulnerability in Sourcecodester Banking System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username or password field.
Affected Software
2 affected components
Banking System Project Banking System=1.0
oretnom23 Banking System=1.0
Event History
Jan 24, 2022
CVE Published
via MITRE·05:47 PM
Data Sourced
via MITRE·05:47 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-41659?
CVE-2021-41659 is considered a critical severity vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2021-41659?
To fix CVE-2021-41659, implement input validation and use prepared statements to prevent SQL injection.
3
What systems are affected by CVE-2021-41659?
CVE-2021-41659 affects Sourcecodester Banking System version 1.0.
4
Can CVE-2021-41659 be exploited remotely?
Yes, CVE-2021-41659 can be exploited remotely through the username or password fields.
5
What types of attacks can CVE-2021-41659 facilitate?
CVE-2021-41659 can facilitate arbitrary SQL command execution, which might lead to data theft or database manipulation.