CVE-2023-5927: Campcodes Simple Student Information System manage_course.php sql injection
A vulnerability has been found in Campcodes Simple Student Information System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/courses/managecourse.php. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-244327.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5927?
The severity of CVE-2023-5927 is high with a score of 7.5.
What is the affected software of CVE-2023-5927?
The affected software of CVE-2023-5927 is Simple Student Information System version 1.0.
What is the CWE category of CVE-2023-5927?
The CWE category of CVE-2023-5927 is CWE-89 (SQL Injection).
How can I exploit CVE-2023-5927?
We do not provide information or support on exploiting vulnerabilities. It is recommended to follow responsible disclosure practices and contact the vendor for remediation.
How can I fix CVE-2023-5927?
To fix CVE-2023-5927, update to the latest version of Simple Student Information System and ensure that proper input validation and parameterized queries are implemented to prevent SQL injection attacks.