A SQL injection vulnerability in /smsa/admin_login.php in Kashipara Responsive School Management System v3.2.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter of the Admin Login Page
References
Configurations
History
No history.
Information
Published : 2024-08-28 18:15
Updated : 2024-08-30 16:02
NVD link : CVE-2024-41236
Mitre link : CVE-2024-41236
CVE.ORG link : CVE-2024-41236
JSON object : View
Products Affected
lopalopa
- responsive_school_management_system
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')