VYPR
High severity8.6NVD Advisory· Published Oct 31, 2022· Updated Jun 17, 2026

CVE-2022-3059

CVE-2022-3059

Description

The application was vulnerable to multiple instances of SQL injection (authenticated and unauthenticated) through a vulnerable parameter. Due to the stacked query support, complex SQL commands could be crafted and injected into the vulnerable parameter and using a sleep based inferential SQL injection it was possible to extract data from the database.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • cpe:2.3:a:schoolbox:schoolbox:21.0.2:*:*:*:*:*:*:*
  • Schoolbox Pty Ltd/Schoolboxv5
    Range: 21.0.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.