First published: Sun May 12 2024(Updated: )
A vulnerability classified as critical has been found in Kashipara College Management System 1.0. This affects an unknown part of the file edit_faculty.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263925 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Kashipara College Management System | ||
Lopalopa College Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4805 is classified as a critical vulnerability.
CVE-2024-4805 is associated with a SQL injection attack.
CVE-2024-4805 can be exploited remotely through the manipulation of the id argument in the edit_faculty.php file.
CVE-2024-4805 allows for unauthorized access to the database, potentially leading to data leakage or corruption.
To fix CVE-2024-4805, it is recommended to sanitize and validate all input data in the edit_faculty.php file.