First published: Thu Jan 20 2022(Updated: )
An SQL Injection vulnerability exists in Courcecodester COVID 19 Testing Management System (CTMS) 1.0 via the (1) username and (2) contactno parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phpgurukul Covid19 Testing Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this SQL Injection vulnerability is CVE-2021-44245.
The severity of CVE-2021-44245 is critical with a CVSS score of 9.8.
The SQL Injection vulnerability occurs in CTMS 1.0 through the parameters 'username' and 'contactno'.
The affected software by CVE-2021-44245 is the Covid 19 Testing Management System 1.0 by Covid 19 Testing Management System Project.
It is recommended to update the Courcecodester COVID 19 Testing Management System (CTMS) to a version that includes a fix for CVE-2021-44245.