CVE-2023-2695
14.05.2023, 11:15
A vulnerability was found in SourceCodester Online Exam System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /kelas/data of the component POST Parameter Handler. The manipulation of the argument columns[1][data] leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-228976.
Vendor | Product | Version |
---|---|---|
online_exam_system_project | online_exam_system | 1.0 |
𝑥
= Vulnerable software versions
References