CVE-2024-12488
12.12.2024, 01:40
A vulnerability was found in code-projects Online Class and Exam Scheduling System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /pages/subject_update.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Vendor | Product | Version |
---|---|---|
fabian | online_class_and_exam_scheduling_system | 1.0 |
𝑥
= Vulnerable software versions
References