Unrated severityNVD Advisory· Published Dec 15, 2023· Updated May 21, 2025
Kaifa Technology WebITR - SQL Injection
CVE-2023-48395
Description
Kaifa Technology WebITR is an online attendance system, it has insufficient validation for user input within a special function. A remote attacker with regular user privilege can exploit this vulnerability to inject arbitrary SQL commands to read database.
Affected products
1- Range: 2_1_0_19
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.