Severity
8.1HIGH
EPSS
0.3%
top 48.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 9
Latest updateSep 15

Description

A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. This issue affects the function mysqli_query of the file admin_cs.php. The manipulation leads to sql injection. The attack may be initiated remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-222647.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:LExploitability: 1.6 | Impact: 3.4

🔴Vulnerability Details

2
CVEList
SourceCodester Online Graduate Tracer System admin_cs.php mysqli_query sql injection2023-03-09
GHSA
GHSA-689x-h5c5-3rx4: A vulnerability was found in SourceCodester Online Graduate Tracer System 12023-03-09

📋Vendor Advisories

2
Red Hat
kernel: Linux kernel: md/raid10 soft lockup due to unlimited plugged bio2025-09-15
Microsoft
Chromium: CVE-2023-0471 Use after free in WebTransport2023-01-10
CVE-2023-1293 (HIGH CVSS 8.1) | A vulnerability was found in Source | cvebase.io