CVE-2023-26780: sql injection vulnerability · Issue #4 · CleverStupidDog/yf-exam
CleverStupidDog yf-exam v 1.8.0 is vulnerable to SQL Injection.
Yunfan training and examination system is a multi-role online training and examination system. The system integrates user management, role management, department management, question bank management, test
question management, test question import and export, test management, online test, wrong question Training and other functions, the examination process is perfect. Yunfan Training Examv1.8.0The parameters
passed in are not filtered, resulting insqlInject.
Vulnerability details