First published: Sun Apr 07 2024(Updated: )
A vulnerability was found in SourceCodester Online Courseware 1.0. It has been classified as critical. This affects an unknown part of the file admin/deactivatestud.php. The manipulation of the argument selector leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259593 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
argie Online Courseware | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-3421 has been classified as critical.
CVE-2024-3421 allows for SQL injection due to argument manipulation in the admin/deactivatestud.php file.
Yes, CVE-2024-3421 can be exploited remotely.
CVE-2024-3421 affects SourceCodester Online Courseware version 1.0.
To fix CVE-2024-3421, it is recommended to update the affected software to a patched version or implement input validation and parameterized queries.