CVE-2024-27685 Information

Description

SQL Injection vulnerability in Student Record system Using PHP and MySQL v.3.20 allows a remote attacker to obtain sensitive information via a crafted payload to the $cshortname $cfullname and $cdate variables.

Reference

https://medium.com/@cnetsec/a-sql-injection-vulnerability-exists-in-the-student-record-system-using-php-and-mysql-v3-20-df2c6fe7dc15 https://phpgurukul.com/student-record-system-php/

CNNVD-202506-3162 (Published: 2025-06-25)

Share on: