nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-45411 CVE-2021-45411
CRITICAL
Printable Staff ID Card Creator System 1.0 - 'email' SQL Injection
Record summary
CVE-2021-45411 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
In Sourcecodetester Printable Staff ID Card Creator System 1.0 after compromising the database via SQLi, an attacker can log in and leverage an arbitrary file upload vulnerability to obtain remote code execution.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPrintable Staff ID Card Creator System 1.0 - 'email' SQL InjectionExploitDB exploitby bwnzNot analyzed1 file
References
3exploit-db.com
https://www.exploit-db.com/exploits/49877 sourcecodester.com
https://www.sourcecodester.com/php/12802/php-staff-id-card-creation-and-printing-system.html