Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33325 | A vulnerability classified as critical was found in romadebrian WEB-Sekolah 1.0. Affected by this vulnerability is an unknown functionality of the file /Proses_Kirim.php of the component Mail Handler. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 06 Nov 2024 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:romadebrian:web-sekolah:1.0:*:*:*:*:*:*:* |
Tue, 05 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Romadebrian
Romadebrian web-sekolah |
|
| CPEs | cpe:2.3:a:romadebrian:web-sekolah:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Romadebrian
Romadebrian web-sekolah |
|
| Metrics |
ssvc
|
Tue, 05 Nov 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability classified as critical was found in romadebrian WEB-Sekolah 1.0. Affected by this vulnerability is an unknown functionality of the file /Proses_Kirim.php of the component Mail Handler. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. | |
| Title | romadebrian WEB-Sekolah Mail Proses_Kirim.php sql injection | |
| Weaknesses | CWE-707 CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-11-05T14:27:03.960Z
Reserved: 2024-11-05T07:34:05.144Z
Link: CVE-2024-10841
Updated: 2024-11-05T14:26:56.222Z
Status : Analyzed
Published: 2024-11-05T14:15:14.220
Modified: 2024-11-06T22:50:24.277
Link: CVE-2024-10841
No data.
OpenCVE Enrichment
No data.
EUVD