Web / CMS
SQL / NoSQL Injection
SQL injection in School Management System 1.0
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
.png)
Overview
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
SQL injection in School Management System 1.0 in GitHub repo lahirudanushka/School-Management-System—PHP-MySQL allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
' or '1'='1′ # ,
' or 1=1;#
Vulnerability details
SQL injection in School Management System 1.0 allows remote attackers to modify or delete data, causing persistent changes to the application's content or behavior by using malicious SQL queries.
Same SQL injection reported under a second identifier. Remote attackers modify or delete data through malicious SQL queries.
Disclosure timeline
2022-08-05 Reported On
2022-08-30 Made Public On
Fixed On: Not Fixed
References
Credits
Soummya Mukhopadhyay
















