CVE-2024-27709
July 5, 2024, 5:15 p.m.
Tags
Product(s) Impacted
Eskooly Web Product
- 3.0
Description
SQL Injection vulnerability in Eskooly Web Product v.3.0 allows a remote attacker to execute arbitrary code via the searchby parameter of the allstudents.php component and the id parameter of the requestmanager.php component.
Weaknesses
Date
Published: July 5, 2024, 5:15 p.m.
Last Modified: July 5, 2024, 5:15 p.m.
Status : Received
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
cve@mitre.org
References
https://blog.be-hacktive.com/
cve@mitre.org