SQL injection vulnerability in Exam Form Submission in PHP with Source Code v.1.0 allows a remote attacker to escalate privileges via the val-username parameter in /index.php.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 08:22
Type | Values Removed | Values Added |
---|---|---|
References | () https://upbeat-washer-def.notion.site/Exam-Form-Submission-In-PHP-SQL-Injection-in-index-php-bd71962db712459488019d531ab2f6f2?pvs=4 - Exploit |
Information
Published : 2023-09-18 12:15
Updated : 2024-11-21 08:22
NVD link : CVE-2023-42359
Mitre link : CVE-2023-42359
CVE.ORG link : CVE-2023-42359
JSON object : View
Products Affected
exam_form_submission_in_php_with_source_code_project
- exam_form_submission_in_php_with_source_code
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')