CVE-2024-6274

CVSS V2 None CVSS V3 None
Description
A vulnerability classified as critical has been found in lahirudanushka School Management System 1.0.0/1.0.1. This affects an unknown part of the file /attendancelist.php of the component Attendance Report Page. The manipulation of the argument aid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-269487.
Overview
  • CVE ID
  • CVE-2024-6274
  • Assigner
  • VulDB
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-06-24T01:00:06.163Z
  • Last Modified Date
  • 2024-06-24T01:00:06.163Z
References
Reference URL Reference Tags
https://vuldb.com/?id.269487 vdb-entry technical-description
https://vuldb.com/?ctiid.269487 signature permissions-required
https://vuldb.com/?submit.362872 third-party-advisory
https://powerful-bulb-c36.notion.site/sql-injection-1-6b3c66351180485ea764561a47239907 exploit
History
Created Old Value New Value Data Type Notes
2024-06-26 03:41:19 Added to TrackCVE