A vulnerability, which was classified as critical, was found in 1000 Projects Attendance Tracking Management System 1.0. This affects an unknown part of the file /admin/chart1.php. The manipulation of the argument course_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Thu, 20 Feb 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
1000projects
1000projects attendance Tracking Management System |
|
CPEs | cpe:2.3:a:1000projects:attendance_tracking_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
1000projects
1000projects attendance Tracking Management System |
Wed, 12 Feb 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as critical, was found in 1000 Projects Attendance Tracking Management System 1.0. This affects an unknown part of the file /admin/chart1.php. The manipulation of the argument course_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
Title | 1000 Projects Attendance Tracking Management System chart1.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-02-12T15:56:35.484Z
Reserved: 2025-02-10T12:58:44.649Z
Link: CVE-2025-1189

No data.

Status : Analyzed
Published: 2025-02-12T10:15:14.540
Modified: 2025-02-20T16:24:17.783
Link: CVE-2025-1189

No data.