Security Advisory

CVE-2017-16561

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-11-07 22:00:00
Last updated 2024-08-05 20:27:04
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

/view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL injection in the 'friend_index' parameter of a GET request.