CVE-2023-30014: ORETNOM23 Judging Management System

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

SQL Injection vulnerability in oretnom23 Judging Management System v1.0, allows remote attackers to execute arbitrary code and obtain sensitive information via sub_event_id parameter in sub_event_stat_update.php.

Affected products

  • ORETNOM23 Judging Management System: version 1.0 only

Published 2024-01-12. Last modified 2026-06-17.