CVE-2022-1080

A vulnerability was found in SourceCodester One Church Management System 1.0. It has been declared as critical. This vulnerability affects code of the file attendancy.php as the manipulation of the argument search2 leads to sql injection. The attack can be initiated remotely.
References
Link Resource
https://vuldb.com/?id.195442 Third Party Advisory
https://vuldb.com/?id.195442 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:one_church_management_system_project:one_church_management_system:1.0:*:*:*:*:*:*:*

History

21 Nov 2024, 06:39

Type Values Removed Values Added
References () https://vuldb.com/?id.195442 - Third Party Advisory () https://vuldb.com/?id.195442 - Third Party Advisory
CVSS v2 : 7.5
v3 : 9.8
v2 : 7.5
v3 : 7.3

Information

Published : 2022-03-29 06:15

Updated : 2024-11-21 06:39


NVD link : CVE-2022-1080

Mitre link : CVE-2022-1080

CVE.ORG link : CVE-2022-1080


JSON object : View

Products Affected

one_church_management_system_project

  • one_church_management_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')