First published: Wed May 15 2024(Updated: )
A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /view/show_student2.php. The manipulation of the argument grade leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-264442 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes School Management Software | ||
Campcodes School Management Software | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4907 is classified as a critical vulnerability.
To fix CVE-2024-4907, you should sanitize and validate the input to prevent SQL injection in the affected file /view/show_student2.php.
CVE-2024-4907 affects Campcodes Complete Web-Based School Management System version 1.0.
CVE-2024-4907 is an SQL injection vulnerability identified in the application.
By exploiting CVE-2024-4907, attackers can manipulate the database through unauthorized SQL queries.