CVE-2021-46307: SQL Injection
Published Jan 21, 2022
·Updated
An SQL Injection vulnerability exists in Projectworlds Online Examination System 1.0 via the eid parameter in account.php.
Affected Software
1 affected component
Projectworlds Online Examination System=1.0
Event History
Jan 21, 2022
CVE Published
via MITRE·03:59 PM
Data Sourced
via MITRE·03:59 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for the SQL Injection vulnerability in Projectworlds Online Examination System?
The vulnerability ID is CVE-2021-46307.
2
What is the severity level of CVE-2021-46307?
The severity level of CVE-2021-46307 is critical with a score of 9.8.
3
How can the SQL Injection vulnerability be exploited in Projectworlds Online Examination System?
The SQL Injection vulnerability can be exploited via the 'eid' parameter in the 'account.php' file.
4
What is the affected software version of Projectworlds Online Examination System?
The affected software version is 1.0.
5
Is there a fix available for CVE-2021-46307?
It is recommended to update to a patched version of Projectworlds Online Examination System to fix CVE-2021-46307. Please refer to the vendor's website for patch information.