CVE-2021-42665SQL Injection in Online Portal Project Engineers Online Portal

CWE-89SQL Injection3 documents3 sources
Severity
9.8CRITICALNVD
EPSS
5.0%
top 10.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 5
Latest updateMay 24

Description

An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index.php, which can allow an attacker to bypass authentication.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

🔴Vulnerability Details

2
GHSA
GHSA-5vc7-wq49-64h9: An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index2022-05-24
CVEList
CVE-2021-42665: An SQL Injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the login form inside of index2021-11-05
CVE-2021-42665 — SQL Injection | cvebase