CVE-2021-44653
Summary
| CVE | CVE-2021-44653 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-15 16:15:00 UTC |
| Updated | 2023-10-18 15:56:00 UTC |
| Description | Online Magazine Management System 1.0 contains a SQL injection authentication bypass vulnerability. The Admin panel authentication can be bypassed due to SQL injection vulnerability in the login form allowing attacker to gain access as admin to the application. |
Risk And Classification
Problem Types: CWE-89
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Online Magazine Management System Project | Online Magazine Management System | 1.0 | All | All | All |
| Application | Oretnom23 | Online Magazine Management System | 1.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Online Magazine Management System 1.0 - SQLi Authentication Bypass - PHP webapps Exploit | MISC | www.exploit-db.com | |
| CVE-2021-44653 | MISC | www.nu11secur1ty.com | |
| CVE-mitre/CVE-2021-44653 at main · nu11secur1ty/CVE-mitre · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.