First published: Fri Mar 17 2023(Updated: )
A vulnerability was found in SourceCodester Student Study Center Desk Management System 1.0. It has been rated as critical. This issue affects the function view_student of the file admin/?page=students/view_student. The manipulation of the argument id with the input 3' AND (SELECT 2100 FROM (SELECT(SLEEP(5)))FWlC) AND 'butz'='butz leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-223325 was assigned to this vulnerability.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Student Study Center Desk Management System Project Student Study Center Desk Management System | =1.0 | |
Oretnom23 Student Study Center Desk Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-1466 is a critical vulnerability found in SourceCodester Student Study Center Desk Management System 1.0.
The function view_student of the file admin/?page=students/view_student is affected by CVE-2023-1466.
CVE-2023-1466 is rated as critical with a severity value of 9.8.
CVE-2023-1466 allows arbitrary SQL injection in the view_student function of SourceCodester Student Study Center Desk Management System 1.0.
To fix CVE-2023-1466, it is recommended to apply the latest security patches or updates provided by the software vendor.