Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 thru 2.1 allow remote authenticated users to execute arbitrary SQL commands via the 'editid' GET parameter in edit-subjects-detail.php, edit-teacher-detail.php, or the 'searchdata' POST parameter in search.php.
History

Wed, 28 May 2025 22:45:00 +0000

Type Values Removed Values Added
Description Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 allow remote authenticated users to execute arbitrary SQL commands via the 'editid' GET parameter in edit-subjects-detail.php, edit-teacher-detail.php, or the 'searchdata' POST parameter in search.php. Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 thru 2.1 allow remote authenticated users to execute arbitrary SQL commands via the 'editid' GET parameter in edit-subjects-detail.php, edit-teacher-detail.php, or the 'searchdata' POST parameter in search.php.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-07-01T14:38:45.000Z

Updated: 2025-05-28T22:38:04.023Z

Reserved: 2021-03-15T00:00:00.000Z

Link: CVE-2021-28423

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-07-01T15:15:08.153

Modified: 2025-05-28T23:15:21.580

Link: CVE-2021-28423

cve-icon Redhat

No data.