High severity7.3NVD Advisory· Published Mar 29, 2022· Updated Jun 17, 2026
CVE-2022-1078
CVE-2022-1078
Description
A vulnerability was found in SourceCodester College Website Management System 1.0. It has been classified as critical. Affected is the file /cwms/admin/?page=articles/view_article/. The manipulation of the argument id with the input ' and (select * from(select(sleep(10)))Avx) and 'abc' = 'abc with an unknown input leads to sql injection. It is possible to launch the attack remotely and without authentication.
Affected products
3- SourceCodester/College Website Management Systemv5Range: 1.0
- Range: <=1.0
- cpe:2.3:a:college_website_management_system_project:college_website_management_system:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- vuldb.comnvdPermissions RequiredThird Party Advisory
News mentions
0No linked articles in our index yet.