First published: Wed Dec 11 2024(Updated: )
A vulnerability has been found in code-projects Online Class and Exam Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /pages/room_update.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Online Class And Exam Scheduling System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12487 is classified as a critical vulnerability.
CVE-2024-12487 affects the Online Class and Exam Scheduling System version 1.0 by allowing SQL injection through the manipulation of the id argument in the file /pages/room_update.php.
To fix CVE-2024-12487, you should update the Online Class and Exam Scheduling System to a patched version that addresses this SQL injection vulnerability.
Exploitation of CVE-2024-12487 could allow attackers to execute arbitrary SQL queries, potentially compromising the database.
CVE-2024-12487 specifically impacts version 1.0 of the Online Class and Exam Scheduling System.