Vulnerabilities > CVE-2022-2697 - Unspecified vulnerability in Simple E-Learning System Project Simple E-Learning System

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
network
low complexity
simple-e-learning-system-project

Summary

A vulnerability was found in SourceCodester Simple E-Learning System. It has been classified as critical. Affected is an unknown function of the file comment_frame.php. The manipulation of the argument post_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-205818 is the identifier assigned to this vulnerability.

Vulnerable Configurations

Part Description Count
Application
Simple_E-Learning_System_Project
1