CVE-2024-12787: 1000 Projects Attendance Tracking Management System check_student_login.php sql injection
A vulnerability has been found in 1000 Projects Attendance Tracking Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /student/checkstudentlogin.php. The manipulation of the argument studentemailid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12787?
CVE-2024-12787 is classified as a critical severity vulnerability.
How do I fix CVE-2024-12787?
To fix CVE-2024-12787, it is recommended to update the 1000 Projects Attendance Tracking Management System to the latest version or apply any available security patches.
What kind of attack is possible with CVE-2024-12787?
CVE-2024-12787 allows for SQL injection attacks through the manipulation of the student_emailid parameter.
Which software versions are affected by CVE-2024-12787?
CVE-2024-12787 affects version 1.0 of the 1000 Projects Attendance Tracking Management System.
What file is involved in the CVE-2024-12787 vulnerability?
The vulnerability in CVE-2024-12787 is found in the /student/check_student_login.php file.