Executive brief
Alpes Recherche et Developpement (ARD) GEC en Ligne, a web-based management platform often used in education and healthcare sectors, contains a security flaw that could allow an attacker to gain unauthorized access to data. By exploiting this vulnerability, a remote user with basic access could potentially escalate their privileges or extract sensitive information from the underlying database. This could lead to the exposure of user records or disruption of services.
Technical details
A SQL injection vulnerability exists in the 'ocid' GET parameter of the index.php transaction confirmation page in ARD GEC en Ligne. The application fails to properly sanitize user-supplied input before using it in a MySQL database query. An authenticated remote attacker can exploit this by sending specially crafted HTTP GET requests to extract sensitive information, such as user tables, or to escalate their privileges within the application. The vulnerability is addressed in versions released on or after April 23, 2025.
Affected products
- Alpes Recherche et Developpement (ARD) GEC en Ligne before 2025-04-23
Timeline
- 2025-04-23: patched: Vendor released fix in version 2025-04-23
- 2025-09-22: advisory: NVD publication date