An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function. B.C. Institute of Technology CodeIgniter =3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php delete() function.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function. B.C. Institute of Technology CodeIgniter =3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php select() function.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function. B.C. Institute of Technology CodeIgniter =3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php limit() function.

An attacker can inject arbitrary SQL code by setting the value of

SQL Injection with CodeIgniter

SQL Injection is a vulnerability in which an attacker can inject SQL code into a database by manipulating input from a user or application.

The security flaw affects CodeIgniter, a popular PHP framework that can be used to build small web applications.

This vulnerability affects thousands of websites and is still unpatched.

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function. B.C. Institute of Technology CodeIgniter =3.1.13 is vulnerable to SQL Injection via system\database\DB_query_builder.php limit() function.

Stored XSS

An attacker can inject arbitrary SQL code by setting the value of system\database\DB_query_builder.php where() function. B.C. Institute of Technology CodeIgniter =3.1.13 is vulnerable to stored XSS via system\database\DB_query_builder.php delete() function.

Timeline

Published on: 10/07/2022 11:15:00 UTC
Last modified on: 10/08/2022 01:28:00 UTC

References