RULE(RULE ID:337847)

Rule General Information
Release Date: 2024-03-06
Rule Name: Rail Pass Management System SQL Injection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: Rail Pass Management System (developed using PHP and MySQL) is a web-based technology that will manage pass records issued by the government and help provide online rail passes to people who need to travel every day. The system has a SQL injection vulnerability.
Impact: An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.