CVE-2013-3602

Coursemill Learning Management System 6.6 - Authenticated SQL Injection via docID Parameter

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in admindocumentworker.jsp in Coursemill Learning Management System (LMS) 6.6 allows remote authenticated users to execute arbitrary SQL commands via the docID parameter.

References (1)

Core 1
Core References
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/960908

Scores

EPSS 0.0126
EPSS Percentile 66.5%

Details

CWE
CWE-89
Status published
Products (1)
trivantis/coursemill_learning_management_system 6.6
Published Sep 06, 2013
Tracked Since Feb 18, 2026