A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. This affects an unknown part of the file /admin/manage_user.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
References
| Link | Resource |
|---|---|
| https://gist.github.com/topsky979/1e98c4d1a3ba1ed73aab46d360c1c4b8 | Exploit |
| https://vuldb.com/?ctiid.272792 | Permissions Required Third Party Advisory |
| https://vuldb.com/?id.272792 | Third Party Advisory |
| https://vuldb.com/?submit.380428 | Third Party Advisory |
| https://gist.github.com/topsky979/1e98c4d1a3ba1ed73aab46d360c1c4b8 | Exploit |
| https://vuldb.com/?ctiid.272792 | Permissions Required Third Party Advisory |
| https://vuldb.com/?id.272792 | Third Party Advisory |
| https://vuldb.com/?submit.380428 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2024-07-30 07:15
Updated : 2025-09-29 21:07
NVD link : CVE-2024-7221
Mitre link : CVE-2024-7221
CVE.ORG link : CVE-2024-7221
JSON object : View
Products Affected
oretnom23
- school_log_management_system
