Description
A vulnerability was determined in itsourcecode School Management System 1.0. This affects an unknown function of the file /ramonsys/inquiry/index.php. This manipulation of the argument txtsearch causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2026-01-29: | Advisory disclosed |
| 2026-01-29: | VulDB entry created |
| 2026-02-04: | VulDB entry last update |
Credits
hywell (VulDB User)
References
vuldb.com/?id.343352 (VDB-343352 | itsourcecode School Management System index.php sql injection)
vuldb.com/?ctiid.343352 (VDB-343352 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.740686 (Submit #740686 | itsourcecode School Management System v1.0 SQL Injection)
mega.nz/file/DQUWSY7Y
itsourcecode.com/