CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2021-42668

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1050%
EPSS Percentile32.15th
Published2021年11月5日
Last Modified2024年11月21日

Vulnerability Description

A SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter in the my_classmates.php web page.. As a result, an attacker can extract sensitive data from the web server and in some cases can use this vulnerability in order to get a remote code execution on the remote web server.

Affected Platforms (CPE)

📦
Engineers Online Portal Project

Engineers Online Portal

All versions

References & Advisories

相關漏洞威脅