CVE-2022-30927 Information

Description

A SQL injection vulnerability exists in Simple Task Scheduling System 1.0 when MySQL is being used as the application database. An attacker can issue SQL commands to the MySQL database through the vulnerable \id\ parameter.

Reference

https://www.sourcecodester.com/php/15328/simple-task-scheduler-system-phpoop-free-source-code.html https://www.sourcecodester.com/sites/default/files/download/oretnom23/tss.zip https://github.com/ykosan1/Simple-Task-Scheduling-System-id-SQL-Injection-Unauthenticated

Share on: