First published: Thu Nov 17 2022(Updated: )
College Management System v1.0 - SQL Injection (SQLi). By inserting SQL commands to the username and password fields in the login.php page
Credit: cna@cyber.gov.il
Affected Software | Affected Version | How to fix |
---|---|---|
College Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-39180 is a SQL Injection (SQLi) vulnerability in the College Management System v1.0.
CVE-2022-39180 allows an attacker to insert SQL commands into the username and password fields of the login page, potentially gaining unauthorized access to the system.
CVE-2022-39180 has a severity rating of critical.
To fix CVE-2022-39180, it is recommended to apply the latest security patches or updates provided by the College Management System project.
More information about CVE-2022-39180 can be found at the following links: [link1](https://www.gov.il/en/departments/faq/cve_advisories), [link2](https://www.gov.il/en/Departments/faq/cve_advisories).