Student Attendance Management System
cpe:2.3:a:student_attendance_management_system_project:student_attendance_management_system:*:*:*:*:*:*:*
- v1
Multiple SQL injection vulnerabilities have been identified in Student Attendance Management System version 1. These vulnerabilities exist in the createStudents.php file and involve the Id, firstname, and admissionNumber parameters, which are not properly sanitized before being used in SQL queries. This lack of sanitation allows remote attackers to execute arbitrary SQL commands.
Exploitation of these vulnerabilities could lead to unauthorized SQL command execution, potentially allowing attackers to manipulate the database or access sensitive information.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.