CVE-2022-31382: SQL Injection
Published Jun 16, 2022
·Updated
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
Affected Software
1 affected component
Phpgurukul Directory Management System=1.0
Event History
Jun 16, 2022
CVE Published
via MITRE·04:46 PM
Data Sourced
via MITRE·04:46 PM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this security issue?
The vulnerability ID for this security issue is CVE-2022-31382.
2
What is the severity of CVE-2022-31382?
The severity of CVE-2022-31382 is critical with a severity value of 9.8.
3
What software is affected by CVE-2022-31382?
The Phpgurukul Directory Management System version 1.0 is affected by CVE-2022-31382.
4
What is the cause of CVE-2022-31382?
CVE-2022-31382 is caused by a SQL injection vulnerability in the searchdata parameter of the search-directory.php file in the Directory Management System v1.0.
5
How can I mitigate the risk associated with CVE-2022-31382?
To mitigate the risk associated with CVE-2022-31382, apply the latest patch or update provided by Phpgurukul and sanitize user input in the searchdata parameter to prevent SQL injection.