Description
A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown function of the file /check.php. Performing manipulation of the argument student results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Problem types
Product status
Timeline
| 2025-12-13: | Advisory disclosed |
| 2025-12-13: | VulDB entry created |
| 2025-12-13: | VulDB entry last update |
Credits
yuancoffee (VulDB User)
References
vuldb.com/?id.336376 (VDB-336376 | code-projects Simple Attendance Record System check.php sql injection)
vuldb.com/?ctiid.336376 (VDB-336376 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.708236 (Submit #708236 | code-projects Simple Attendance Record System 2.0 SQL Injection)
github.com/asd1238525/cve/blob/main/SQL20.md
code-projects.org/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.