Critical severity9.8NVD Advisory· Published Apr 19, 2022· Updated Jun 17, 2026
CVE-2022-27927
CVE-2022-27927
Description
A SQL injection vulnerability exists in Microfinance Management System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable course_code and/or customer_number parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Microfinance Management System/Microfinance Management Systemdescription
- cpe:2.3:a:microfinance_management_system_project:microfinance_management_system:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/167017/Microfinance-Management-System-1.0-SQL-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.sourcecodester.com/php/14822/microfinance-management-system.htmlnvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.