Car Driving School Management System v1.0 is affected by SQL injection in the login page. An attacker can use simple SQL login injection payload to get admin access.
References
Link | Resource |
---|---|
https://github.com/nsparker1337/OpenSource/blob/main/exploit_sql | Exploit Third Party Advisory |
https://github.com/nu11secur1ty/CVE-mitre/tree/main/2022/CVE-2022-24571 | Exploit Third Party Advisory |
https://www.nu11secur1ty.com/2022/03/cve-2022-24571.html | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-02-28T13:07:37
Updated: 2022-03-02T23:32:26
Reserved: 2022-02-07T00:00:00
Link: CVE-2022-24571
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-02-28T14:15:08.407
Modified: 2022-03-08T17:38:58.790
Link: CVE-2022-24571
JSON object: View
Redhat Information
No data.
CWE