CNNVD-202512-469 Information

CNNVD ID

CNNVD-202512-469

CVE-2024-58276

  • CNNVD Published: 2025-12-04

Description (Chinese)

Enrollment System是Obi08个人开发者的一个招生系统软件。 Enrollment System 1.0版本存在SQL注入漏洞,该漏洞源于/get_subject.php中参数keyword存在SQL注入,可能导致提取敏感信息。

Description (English)

Enrollment System is an admission system software for Obi08 individual developers. Version 1.0 of Enrollment System has an injection loophole in SQL, which originates from the parameter keyword in/get subject.php and may lead to the extraction of sensitive information.

Hazard Level

High

Vulnerability Type

SQL注入

Affected Vendor

个人开发者

Published

2025-12-04

Last Modified

2026-02-24

References

https://github.com/Obi08/Enrollment_System https://www.exploit-db.com/exploits/51845 https://www.vulncheck.com/advisories/obi08-enrollment-system-10-loginphp-sql-injection

Share on: