Critical severity9.8NVD Advisory· Published Jan 24, 2022· Updated Jun 17, 2026
CVE-2021-40908
CVE-2021-40908
Description
SQL injection vulnerability in Login.php in Sourcecodester Purchase Order Management System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:purchase_order_management_system_project:purchase_order_management_system:1.0:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: v1
Patches
Vulnerability mechanics
References
1- github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/oretnom23/CVE-nu11-09nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.