CVE-2023-5926: Campcodes Simple Student Information System update_status.php sql injection
A vulnerability, which was classified as critical, was found in Campcodes Simple Student Information System 1.0. Affected is an unknown function of the file /admin/students/updatestatus.php. The manipulation of the argument studentid leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-244326 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity rating of CVE-2023-5926?
The severity rating of CVE-2023-5926 is high, with a severity value of 7.5.
What is the affected software in CVE-2023-5926?
The affected software in CVE-2023-5926 is Campcodes Simple Student Information System version 1.0.
What is the vulnerability type in CVE-2023-5926?
The vulnerability type in CVE-2023-5926 is SQL Injection.
How can the SQL Injection vulnerability be exploited in CVE-2023-5926?
The SQL Injection vulnerability in CVE-2023-5926 can be exploited by manipulating the 'student_id' argument in the /admin/students/update_status.php file.
Are there any references related to CVE-2023-5926?
Yes, here are some references related to CVE-2023-5926: [link1], [link2], [link3].