Security Advisory
CVE-2024-54931
9.8
CRITICAL
Vulnerability Description
A SQL Injection was found in /admin/delete_event.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the id parameter.
Published Date
December 9, 2024
Official Source
NIST NVD Advisory