CVE-2024-54922 Information
Dec 10, 2024
cve
Description
A SQL Injection was found in /admin/edit_user.php of kashipara E-learning Management System v1.0 which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the firstname lastname and username parameters.