ZeroHour

CVE-2024-37840

PoC
CVSS 3.1
8.8 high
EPSS
<1%p44
Published
()
Modified
Description

SQL injection vulnerability in processscore.php in Itsourcecode Learning Management System Project In PHP With Source Code v1.0 allows remote attackers to execute arbitrary SQL commands via the LessonID parameter.

Vendors
itsourcecode
Products
learning management system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.