A vulnerability, which was classified as critical, has been found in SourceCodester Online Graduate Tracer System 1.0. Affected by this issue is some unknown functionality of the file tracking/admin/add_acc.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-221798 is the identifier assigned to this vulnerability.
References
Link | Resource |
---|---|
https://blog.csdn.net/weixin_43864034/article/details/129228718 | Broken Link |
https://vuldb.com/?ctiid.221798 | Permissions Required |
https://vuldb.com/?id.221798 | Permissions Required |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: VulDB
Published: 2023-02-26T11:55:02.741Z
Updated: 2024-02-13T07:52:07.902Z
Reserved: 2023-02-26T11:54:43.175Z
Link: CVE-2023-1040
JSON object: View
NVD Information
Status : Modified
Published: 2023-02-26T12:15:11.217
Modified: 2024-05-17T02:17:45.967
Link: CVE-2023-1040
JSON object: View
Redhat Information
No data.
CWE