High severity8.6NVD Advisory· Published Oct 31, 2022· Updated Jun 17, 2026
CVE-2022-3059
CVE-2022-3059
Description
The application was vulnerable to multiple instances of SQL injection (authenticated and unauthenticated) through a vulnerable parameter. Due to the stacked query support, complex SQL commands could be crafted and injected into the vulnerable parameter and using a sleep based inferential SQL injection it was possible to extract data from the database.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Schoolbox Pty Ltd/Schoolboxv5Range: 21.0.2
Patches
Vulnerability mechanics
References
1- www.themissinglink.com.au/security-advisories/cve-2022-3059nvdThird Party Advisory
News mentions
0No linked articles in our index yet.