First published: Thu May 23 2024(Updated: )
A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /view/teacher_salary_details3.php. The manipulation of the argument index leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-265984.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Campcodes School Management Software | ||
Campcodes School Management Software | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5233 is classified as a critical vulnerability.
CVE-2024-5233 is a SQL injection vulnerability affecting the Campcodes Complete Web-Based School Management System.
CVE-2024-5233 allows an attacker to manipulate the 'index' argument in the file /view/teacher_salary_details3.php to execute unauthorized SQL commands.
To fix CVE-2024-5233, it is recommended to sanitize input data in the affected file and use prepared statements for database queries.
CVE-2024-5233 affects Campcodes Complete Web-Based School Management System version 1.0.