code-projects Job Recruitment
cpe:2.3:a:code-projects:job_recruitment:*:*:*:*:*:*:*
- 1.0
A critical SQL injection vulnerability has been identified in the Job Recruitment application, version 1.0. The issue arises in the Job Post Handler component, specifically within the file '/_parse/_call_job/search_ajax.php'. The vulnerability allows remote attackers to manipulate the 'n' argument, leading to unauthorized database access or manipulation.
Exploitation of this vulnerability allows for SQL injection, which could be used to interfere with the application's database queries. This might include retrieving, modifying, or deleting database information. In some cases, such SQL injection vulnerabilities can be exploited to execute arbitrary code on the server.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.