9.8
CVSSv3

CVE-2023-5011

Published: 20/12/2023 Updated: 26/12/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Student Information System v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'coursename' parameter of the marks.php resource does not validate the characters received and they are sent unfiltered to the database.

Vulnerable Product Search on Vulmon Subscribe to Product

kashipara student information system 1.0