CyberRota Analysis
AI-GeneratedThe SourceCodester Online Reviewer Management System 1.0 is vulnerable to SQL injection through the `difficulty_id` parameter in the `btn_functions.php` file, allowing remote attackers to manipulate database queries. This could lead to unauthorized data access or modification, posing a significant risk to the integrity of the system. Organizations using this software should prioritize patching this vulnerability to mitigate potential exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was found in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=update. The manipulation of the argument difficulty_id results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.