top of page
perceptive_background_267k.jpg

A SQL injection vulnerability in CodeAstro Simple Attendance Management System v1.0 allows remote unauthenticated attackers to bypass authentication via the use…

Published:

16 april 2026 om 22:00:00

Alert date:

17 april 2026 om 17:01:02

Source:

nvd.nist.gov

Click to open the original link from this advisory

Web Technologies, Database & Storage

A SQL injection vulnerability exists in CodeAstro Simple Attendance Management System v1.0 that allows remote unauthenticated attackers to bypass authentication. The vulnerability is located in the username parameter of the index.php file. Attackers can exploit this flaw without authentication to gain unauthorized access to the system. This represents a critical security issue as it allows complete authentication bypass through SQL injection techniques.

Technical details

Mitigation steps:

Affected products:

CodeAstro Simple Attendance Management System

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page