CVE-2023-6657: SourceCodester Simple Student Attendance System student_form.php sql injection
A vulnerability classified as critical has been found in SourceCodester Simple Student Attendance System 1.0. This affects an unknown part of the file /modals/studentform.php. The manipulation of the argument id leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-247365 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6657?
CVE-2023-6657 is classified as a critical vulnerability.
How does CVE-2023-6657 affect the system?
CVE-2023-6657 allows for SQL injection through the manipulation of the 'id' argument in the student_form.php file.
Which version of the software is vulnerable due to CVE-2023-6657?
Only SourceCodester Simple Student Attendance System version 1.0 is affected by CVE-2023-6657.
How can I mitigate the risk associated with CVE-2023-6657?
To mitigate CVE-2023-6657, validate and sanitize user inputs to prevent SQL injection attacks.
Is there a patch available for CVE-2023-6657?
As of now, there is no official patch released to fix CVE-2023-6657.