First published: Wed Mar 27 2024(Updated: )
A vulnerability has been found in Campcodes Online Examination System 1.0 and classified as critical. This vulnerability affects unknown code of the file /adminpanel/admin/query/deleteExamExe.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-258034 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes Online Examination System | ||
Campcodes Online Examination System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2943 is classified as a critical severity vulnerability.
CVE-2024-2943 affects the /adminpanel/admin/query/deleteExamExe.php file, allowing SQL injection through the manipulation of the 'id' argument.
To mitigate CVE-2024-2943, sanitize and validate all inputs in the affected file to prevent SQL injection.
CVE-2024-2943 specifically affects version 1.0 of Campcodes Online Examination System.
CVE-2024-2943 is a SQL injection vulnerability.