A vulnerability was found in SourceCodester Online Exam...
Moderate severity
Unreviewed
Published
May 14, 2023
to the GitHub Advisory Database
•
Updated Nov 4, 2023
Description
Published by the National Vulnerability Database
May 14, 2023
Published to the GitHub Advisory Database
May 14, 2023
Last updated
Nov 4, 2023
A vulnerability was found in SourceCodester Online Exam System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /mahasiswa/data of the component POST Parameter Handler. The manipulation of the argument columns[1][data] leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-228974 is the identifier assigned to this vulnerability.
References