A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as critical. This vulnerability affects unknown code of the file book_history.php. The manipulation of the argument del_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-256954 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 14 Feb 2025 17:30:00 +0000

Type Values Removed Values Added
First Time appeared Magesh-k21
Magesh-k21 online-college-event-hall-reservation-system
CPEs cpe:2.3:a:magesh-k21:online-college-event-hall-reservation-system:1.0:*:*:*:*:*:*:*
Vendors & Products Magesh-k21
Magesh-k21 online-college-event-hall-reservation-system

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2024-08-27T20:17:53.985Z

Reserved: 2024-03-15T16:26:57.957Z

Link: CVE-2024-2517

cve-icon Vulnrichment

Updated: 2024-08-01T19:18:47.376Z

cve-icon NVD

Status : Analyzed

Published: 2024-03-16T12:15:15.630

Modified: 2025-02-14T17:00:42.847

Link: CVE-2024-2517

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.