NA

CVE-2024-27574

Published: 22/04/2024 Updated: 23/04/2024

Vulnerability Summary

SQL Injection vulnerability in Trainme Academy version Ichin v.1.3.2 allows a remote malicious user to obtain sensitive information via the informacion, idcurso, and tit parameters.

Github Repositories

vulnerabilities CVE-ID CVE-2024-27574 DESCRIPTION: SQL injection vulnerability in Trainme Academy Ichin v132 A SQL injection vulnerability is identified in a lack of proper validation in data entry in one of the fields of the course management system This allows an attacker to inject and execute SQL queries, compromising the security of over 200 databases and granting unaut