First published: Tue Nov 14 2023(Updated: )
SQL Injection vulnerability in index.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers to run arbitrary SQL commands and obtain sensitive information via the 'searchdata' parameter.
Credit: cve@mitre.org Ersin Erenler
Affected Software | Affected Version | How to fix |
---|---|---|
phpgurukul Teacher Subject Allocation Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-46024.
The title of this vulnerability is 'SQL Injection vulnerability in index.php in phpgurukul Teacher Subject Allocation Management System'.
The description of this vulnerability is that it allows attackers to run arbitrary SQL commands and obtain sensitive information via the 'searchdata' parameter in index.php.
The severity of this vulnerability is high, with a severity score of 7.5.
Attackers can exploit this vulnerability by injecting malicious SQL commands through the 'searchdata' parameter in index.php.
No specific fix information is provided in the given reference link, but it is recommended to update to a patched version or apply relevant security measures.