Simple e-Learning System是Carlo Montero个人开发者的一个简单电子学习系统。 Simple e-Learning System 1.0版本存在SQL注入漏洞,该漏洞源于影响到classRoom.php文件的一些未知处理。在classCode输入特殊参数会导致SQL注入。攻击可以远程发起。该漏洞已向公众披露并可能被使用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Simple E-Learning System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-2490 | 6.3 MEDIUM | SourceCodester Simple E-Learning System search.php sql injection |
| CVE-2022-2491 | 6.3 MEDIUM | SourceCodester Library Management System lab.php sql injection |
| CVE-2022-2492 | 6.3 MEDIUM | SourceCodester Library Management System index.php sql injection |
No comments yet