SQL Injection vulnerability in Intern Record System version 1.0 in /intern/controller.php in 'phone', 'email', 'deptType' and 'name' parameters, allows attackers to execute arbitrary code and gain sensitive information.
- http://packetstormsecurity.com/files/171740/Intern-Record-System-1.0-SQL-Injection.html
- https://github.com/h4md153v63n/CVE-2022-40347_Intern-Record-System-phone-V1.0-SQL-Injection-Vulnerability-Unauthenticated
- https://github.com/h4md153v63n/CVE-2022-40347_Intern-Record-System-phone-V1.0-SQL-Injection-Vulnerability-Unauthenticated
- https://github.com/h4md153v63n/CVEs
- https://github.com/h4md153v63n/h4md153v63n
- https://github.com/nomi-sec/PoC-in-GitHub