Metrics
Affected Vendors & Products
Tue, 12 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 11 Nov 2024 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability affects unknown code of the file /incadd.php. The manipulation of the argument inccat/desc/date/amount leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory only mentions the parameter "inccat" to be affected. But it must be assumed "desc", "date", and "amount" are affected as well. | |
Title | itsourcecode Tailoring Management System incadd.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2024-11-11T17:31:04.957Z
Updated: 2024-11-12T20:13:59.822Z
Reserved: 2024-11-11T08:30:43.016Z
Link: CVE-2024-11074
Updated: 2024-11-12T16:06:02.980Z
Status : Awaiting Analysis
Published: 2024-11-11T18:15:14.620
Modified: 2024-11-12T13:55:21.227
Link: CVE-2024-11074
No data.