CVE-2022-2679 | SourceCodester Interview Management System 1.0 /viewReport.php ID sql injection
A vulnerability was found in SourceCodester Interview Management System 1.0. It has been declared as critical. Affected is an unknown function of the file /viewReport.php. Executing manipulation of the argument ID with the input (UPDATEXML(9729,CONCAT(0x2e,0x716b707071,(SELECT (ELT(9729=9729,1))),0x7162766a71),7319)) can lead to sql injection.
This vulnerability is handled as CVE-2022-2679. The attack can be executed remotely. Additionally, an exploit exists.