Unrated severityNVD Advisory· Published Dec 22, 2024· Updated Dec 25, 2024
code-projects Online Exam Mastering System update.php sql injection
CVE-2024-12890
Description
A vulnerability was found in code-projects Online Exam Mastering System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /update.php?q=quiz&step=2. The manipulation of the argument eid leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
21.0+ 1 more
- (no CPE)range: 1.0
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
5- hackmd.io/@salt9487/B1gWdeXrkxmitreexploit
- vuldb.commitrethird-party-advisory
- code-projects.orgmitreproduct
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.