CVE-2023-5924: Campcodes Simple Student Information System view_course.php sql injection
A vulnerability classified as critical was found in Campcodes Simple Student Information System 1.0. This vulnerability affects unknown code of the file /admin/courses/viewcourse.php. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-244324.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-5924?
CVE-2023-5924 is a critical vulnerability in Campcodes Simple Student Information System 1.0 that allows SQL injection through the 'id' parameter in the /admin/courses/view_course.php file.
What is the severity of CVE-2023-5924?
CVE-2023-5924 has a severity of 7.5 (high).
How does CVE-2023-5924 affect Campcodes Simple Student Information System?
CVE-2023-5924 affects the unknown code in the /admin/courses/view_course.php file of Campcodes Simple Student Information System version 1.0, allowing SQL injection.
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2023-5924?
CVE-2023-5924 is associated with CWE-89, which is for SQL injection vulnerabilities.
How can I fix the CVE-2023-5924 vulnerability?
To fix the CVE-2023-5924 vulnerability, it is recommended to apply the latest patches or updates provided by Campcodes for Simple Student Information System.