CVE-2024-33405
EUVD-2024-3114406.05.2024, 18:15
SQL injection vulnerability in add_friends.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the friend_index parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| campcodes | complete_web-based_school_management_system | 1.0 |
𝑥
= Vulnerable software versions
References