CVE-2021-42224: SQL Injection
SQL Injection vulnerability exists in IFSC Code Finder Project 1.0 via the searchifsccode POST parameter in /search.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-42224?
The severity of CVE-2021-42224 is critical with a CVSS score of 9.8.
What is the affected software of CVE-2021-42224?
The affected software of CVE-2021-42224 is IFSC Code Finder Project version 1.0.
How does the vulnerability manifest in CVE-2021-42224?
The vulnerability manifests as a SQL Injection vulnerability in the searchifsccode POST parameter in /search.php of the IFSC Code Finder Project 1.0.
Are there any known exploits for CVE-2021-42224?
Yes, there are known exploits available for CVE-2021-42224. You can find them at the following references: [exploit-db.com](https://www.exploit-db.com/exploits/50391), [packetstormsecurity.com](http://packetstormsecurity.com/files/164514/IFSC-Code-Finder-Project-1.0-SQL-Injection.html), [github.com](https://github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-42224).
How can I fix CVE-2021-42224?
To fix CVE-2021-42224, patch or update the IFSC Code Finder Project to a version that resolves the SQL Injection vulnerability.