Testa Online Test Management System 3.4.7 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'q' search parameter. Attackers can inject malicious SQL code in the search field to extract database information, potentially accessing sensitive user or system data.
Metrics
Affected Vendors & Products
References
History
Tue, 27 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 27 Jan 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Testa Online Test Management System 3.4.7 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'q' search parameter. Attackers can inject malicious SQL code in the search field to extract database information, potentially accessing sensitive user or system data. | |
| Title | Testa Online Test Management System 3.4.7 - 'q' SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-27T16:01:24.282Z
Reserved: 2026-01-18T12:35:05.176Z
Link: CVE-2021-47902
Updated: 2026-01-27T16:01:20.690Z
Status : Received
Published: 2026-01-27T16:16:13.283
Modified: 2026-01-27T16:16:13.283
Link: CVE-2021-47902
No data.
OpenCVE Enrichment
No data.