Campcodes Online College Library System HTTP POST Request book_row.php sql injection
CVE-2023-7178
7.2HIGH
What is CVE-2023-7178?
A SQL injection vulnerability has been identified in Campcodes Online College Library System, specifically within the /admin/book_row.php file's HTTP POST Request Handler. This flaw arises from improper handling of the 'id' argument, allowing attackers to manipulate SQL queries. The vulnerability can be exploited remotely, which presents serious security risks for systems running this application version. Publically disclosed exploits may pose an immediate threat to affected users.
Affected Version(s)
Online College Library System 1.0