CVE-2021-42668: SQL Injection
A SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter in the myclassmates.php web page.. As a result, an attacker can extract sensitive data from the web server and in some cases can use this vulnerability in order to get a remote code execution on the remote web server.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-42668?
CVE-2021-42668 is a SQL Injection vulnerability that exists in Sourcecodester Engineers Online Portal in PHP.
How does CVE-2021-42668 work?
CVE-2021-42668 can be exploited by an attacker by injecting malicious SQL statements through the 'id' parameter in the my_classmates.php web page.
What is the severity level of CVE-2021-42668?
CVE-2021-42668 has a severity level of critical, with a CVSS score of 9.8.
How can CVE-2021-42668 be exploited by an attacker?
An attacker can exploit CVE-2021-42668 to extract sensitive data from the web server and in some cases achieve remote code execution.
Are there any references available for CVE-2021-42668?
Yes, you can find more information about CVE-2021-42668 on the following links: [link1], [link2], [link3]