CVE-2024-2944: Campcodes Online Examination System deleteCourseExe.php sql injection
A vulnerability was found in Campcodes Online Examination System 1.0 and classified as critical. This issue affects some unknown processing of the file /adminpanel/admin/query/deleteCourseExe.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258035.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2944?
CVE-2024-2944 is classified as a critical vulnerability.
How does CVE-2024-2944 affect the Campcodes Online Examination System?
CVE-2024-2944 allows for SQL injection through manipulation of the 'id' argument in the file '/adminpanel/admin/query/deleteCourseExe.php'.
How can I fix CVE-2024-2944?
To fix CVE-2024-2944, sanitize and validate input parameters to prevent SQL injection effectively.
Who is affected by CVE-2024-2944?
CVE-2024-2944 affects users of Campcodes Online Examination System version 1.0.
What are the potential impacts of CVE-2024-2944?
Exploitation of CVE-2024-2944 could lead to unauthorized data access or manipulation within the database.