Simple e-Learning System是Carlo Montero个人开发者的一个简单电子学习系统。 Simple e-Learning System 1.0版本存在SQL注入漏洞,该漏洞源于受影响的是文件search.php的一个未知功能。输入特殊字符串操作参数 classCode会导致sql注入。攻击可以远程发起。该漏洞利用已向公众披露并可能被使用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Simple E-Learning System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-2489 | 6.3 MEDIUM | SourceCodester Simple E-Learning System classRoom.php sql injection |
| CVE-2022-2491 | 6.3 MEDIUM | SourceCodester Library Management System lab.php sql injection |
| CVE-2022-2492 | 6.3 MEDIUM | SourceCodester Library Management System index.php sql injection |
No comments yet