Software Download Linkproduct
https://iwantfilemanager.com/?dl=b48d951cbdd50568b031aab3b619fed2 CVE-2021-47846
HIGH
Digital Crime Report Management System 1.0 - SQL Injection
Record summary
CVE-2021-47846 has a selected CVSS score of 8.8 (high); EIP currently links 1 catalogued exploit.
Description
Digital Crime Report Management System 1.0 contains a critical SQL injection vulnerability affecting multiple login pages that allows unauthenticated attackers to bypass authentication. Attackers can exploit the vulnerability by sending crafted SQL injection payloads in email and password parameters across police, incharge, user, and HQ login endpoints.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jan 22, 2026 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Digital Crime Report Management SystemBrowse I Want Source Codes / Digital Crime Report Management System | CVE List | 1.0 | affected |
Proofs of concept
1Catalogued exploits
ExploitDBDigital Crime Report Management System 1.0 - SQL Injection (Authentication Bypass)ExploitDB exploitby GaluhIDNot analyzed1 file
References
5Vendor Homepageproduct
https://iwantsourcecodes.com/digital-crime-report-management-system-in-php-with-source-code nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-47846 ExploitDB-49761exploit
https://www.exploit-db.com/exploits/49761 VulnCheck Advisory: Digital Crime Report Management System 1.0 - SQL InjectionThird-party advisory
https://www.vulncheck.com/advisories/digital-crime-report-management-system-sql-injection