SQL Injection Vulnerability Discovered in COVID-19 Testing Management System
CVE-2024-53603 
Currently unrated
Key Information:
- Vendor
 PHPGurukul
- Vendor
 - CVE Published:
 - 27 November 2024
 
What is CVE-2024-53603?
A SQL Injection vulnerability was found in /covid-tms/password-recovery.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the contactno POST request parameter.
