First published: Tue Jul 30 2024(Updated: )
A vulnerability classified as critical was found in SourceCodester School Log Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/print_barcode.php. The manipulation of the argument tbl leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272791.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 School Log Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7220 is classified as a critical vulnerability.
CVE-2024-7220 exploits a SQL injection vulnerability through the tbl argument in the /admin/print_barcode.php file.
CVE-2024-7220 affects version 1.0 of the Oretnom23 School Log Management System.
CVE-2024-7220 allows attackers to manipulate database queries, potentially leading to unauthorized access to sensitive information.
To mitigate CVE-2024-7220, it's recommended to update the Oretnom23 School Log Management System to a version that has patched the SQL injection vulnerability.