First published: Wed Mar 13 2024(Updated: )
SQL Injection vulnerability in code-projects Agro-School Management System 1.0 allows attackers to run arbitrary code via the Login page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Agro-School Management System (code-projects) | ||
Carmelo Agro-school Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25250 is classified as a critical SQL Injection vulnerability that allows for arbitrary code execution.
To fix CVE-2024-25250, update the Agro-School Management System to the latest version and validate user inputs to prevent SQL Injection.
Exploitation of CVE-2024-25250 can allow attackers to execute arbitrary code, potentially compromising the entire system.
Mitigating CVE-2024-25250 involves implementing parameterized queries and escaping user inputs to protect against SQL Injection.
CVE-2024-25250 affects users of the Agro-School Management System version 1.0 developed by code-projects.