Description
|
|
A vulnerability has been identified in ATutor, which could be exploited by attackers to manipulate and inject SQL queries. This issue is caused by an input validation error in the "include/classes/ContentManager.class.php" script when processing the "course" parameter supplied via the "include/vitals.inc.php" script (included via "login.php"), which could be exploited by malicious people to conduct SQL injection attacks.
|