CVE-2024-5237
CVSS 3.1 Score 6.3 of 10 (medium)
Details
Published May 23, 2024
Updated: Jun 4, 2024
CWE ID 89
Summary
CVE-2024-5237 is a critical vulnerability affecting the Campcodes Complete Web-Based School Management System version 1.0. This issue impacts an unspecified functionality within the file /view/timetable_grade-wise.php. The vulnerability allows for SQL injection, which can be exploited remotely. The manipulation of the argument "grade" is the trigger for this exploit. The vulnerability identification number for this issue is VDB-265988, and the exploit code has been made public, increasing the risk for potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share