ZeroHour

CVE-2021-40578

PoC ×2
CVSS 3.1
7.2 high
EPSS
1%p72
Published
()
Modified
Description

Authenticated Blind & Error-based SQL injection vulnerability was discovered in Online Enrollment Management System in PHP and PayPal Free Source Code 1.0, that allows attackers to obtain sensitive information and execute arbitrary SQL commands via IDNO parameter.

Vendors
online enrollment management system project
Products
online enrollment management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.