First published: Wed Sep 14 2022(Updated: )
Loan Management System 1.0 is vulnerable to SQL Injection at the login page, which allows unauthorized users to login as Administrator after injecting username form.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Loan Management System | =1.0 | |
Loan Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37138 has a high severity rating due to its potential for unauthorized access to the system.
To fix CVE-2022-37138, implement parameterized queries or prepared statements to prevent SQL injection at the login page.
CVE-2022-37138 affects Loan Management System version 1.0.
CVE-2022-37138 enables SQL injection attacks allowing unauthorized users to log in as Administrator.
Yes, CVE-2022-37138 compromises authentication by allowing unauthorized access through SQL injection.