First published: Sun May 19 2024(Updated: )
A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /view/student_first_payment.php. The manipulation of the argument grade leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-265093 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes School Management Software | ||
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5103 has been declared as critical due to its potential to allow SQL injection.
To fix CVE-2024-5103, it's recommended to sanitize and validate input parameters in the /view/student_first_payment.php file.
CVE-2024-5103 affects Campcodes Complete Web-Based School Management System version 1.0.
CVE-2024-5103 is a SQL injection vulnerability that allows unauthorized database access.
Yes, CVE-2024-5103 can potentially compromise user data by allowing attackers to manipulate database queries.