CVE-2024-27709

Publication date

2024-07-05 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL Injection vulnerability in Eskooly Web Product v.3.0 allows a remote attacker to execute arbitrary code via the searchby parameter of the allstudents.php component and the id parameter of the requestmanager.php component.