Vulnerability Details CVE-2024-28094
Chat functionality in Schoolbox application before
version 23.1.3 is vulnerable to blind SQL Injection enabling the
authenticated attackers to read, modify, and delete database records.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.2%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2024-28094
-
cpe:2.3:a:schoolbox:schoolbox:-
-
cpe:2.3:a:schoolbox:schoolbox:21.0.2