CVE-2022-36731: SQL Injection
Published Aug 30, 2022
·Updated
Library Management System v1.0 was discovered to contain a SQL injection vulnerability via the RollNo parameter at /librarian/delstu.php.
Affected Software
1 affected component
Library Management System Project Library Management System=1.0
Event History
Aug 30, 2022
CVE Published
via MITRE·08:43 PM
Data Sourced
via MITRE·08:43 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-36731?
CVE-2022-36731 is classified as a critical SQL injection vulnerability that can compromise the integrity of the database.
2
How do I fix CVE-2022-36731?
To fix CVE-2022-36731, sanitize and validate user input, particularly the RollNo parameter to prevent malicious SQL queries.
3
What systems are affected by CVE-2022-36731?
CVE-2022-36731 affects Library Management System version 1.0.
4
Can CVE-2022-36731 lead to data exposure?
Yes, CVE-2022-36731 can lead to unauthorized access to sensitive data due to the SQL injection vulnerability.
5
Is CVE-2022-36731 commonly exploited?
CVE-2022-36731 is a well-known vulnerability and can be easily exploited by attackers if left unpatched.