Critical severity9.8NVD Advisory· Published Jan 21, 2022· Updated Jun 17, 2026
CVE-2021-40247
CVE-2021-40247
Description
SQL injection vulnerability in Sourcecodester Budget and Expense Tracker System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:oretnom23:budget_and_expense_tracker_system:1.0:*:*:*:*:*:*:*
- Sourcecodester/Budget and Expense Tracker Systemdescription
- Range: v1
Patches
Vulnerability mechanics
References
2- github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/B%26E%20Tracker-by:oretnom23-v1.0nvdExploitThird Party Advisory
- www.sourcecodester.com/php/14893/budget-and-expense-tracker-system-php-free-source-code.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.