Metrics
Affected Vendors & Products
Thu, 14 Nov 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Angeljudesuarez
Angeljudesuarez tailoring Management System |
|
CPEs | cpe:2.3:a:angeljudesuarez:tailoring_management_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Angeljudesuarez
Angeljudesuarez tailoring Management System |
Tue, 12 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 11 Nov 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability affects unknown code of the file /incadd.php. The manipulation of the argument inccat/desc/date/amount leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory only mentions the parameter "inccat" to be affected. But it must be assumed "desc", "date", and "amount" are affected as well. | |
Title | itsourcecode Tailoring Management System incadd.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-11-11T17:31:04.957Z
Updated: 2024-11-12T20:13:59.822Z
Reserved: 2024-11-11T08:30:43.016Z
Link: CVE-2024-11074
Updated: 2024-11-12T16:06:02.980Z
Status : Analyzed
Published: 2024-11-11T18:15:14.620
Modified: 2024-11-14T19:06:54.750
Link: CVE-2024-11074
No data.