First published: Thu Aug 25 2022(Updated: )
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/modify1.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Library Management System Project Library Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36720 is high with a severity value of 8.8.
CVE-2022-36720 affects the Library Management System v1.0 by allowing SQL injection via the id parameter at /admin/modify1.php.
The CWE of CVE-2022-36720 is 89.
There is no specific fix mentioned for CVE-2022-36720. It is recommended to follow secure coding practices and implement input validation and parameterized queries to prevent SQL injection vulnerabilities.
You can find more information about CVE-2022-36720 at the following reference: [Link](https://github.com/k0xx11/bug_report/blob/main/vendors/kingbhob02/library-management-system/SQLi-13.md)