CVE-2024-25309: SQL Injection
Published Feb 9, 2024
·Updated
Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'pass' parameter at School/teacherlogin.php.
Affected Software
1 affected component
Code-projects Simple School Management System=1.0
Event History
Feb 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
May 4, 56090
Event
via FIRST·02:20 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-25309?
The severity of CVE-2024-25309 is classified as high due to the potential for unauthorized access to sensitive data through SQL injection.
2
How do I fix CVE-2024-25309?
To fix CVE-2024-25309, validate and sanitize the 'pass' parameter to prevent SQL injection attacks in the login process.
3
What kind of systems are affected by CVE-2024-25309?
CVE-2024-25309 affects Code-projects Simple School Management System version 1.0.
4
What is the impact of exploiting CVE-2024-25309?
Exploiting CVE-2024-25309 could allow an attacker to bypass authentication and gain unauthorized access to the system.
5
Where can I find more information about CVE-2024-25309?
More information about CVE-2024-25309 can be found in the official CVE database and related security advisory documents.