SQL Injection vulnerability in Online Complaint Site v.1.0 allows a remote attacker to escalate privileges via the username and password parameters in the /admin.index.php component.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/b1u3st0rm/CVE-2024-44812-PoC |
History
Fri, 25 Oct 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Janobe
Janobe online Complaint Site |
|
CPEs | cpe:2.3:a:janobe:online_complaint_site:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Janobe
Janobe online Complaint Site |
Wed, 23 Oct 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Sourcecodester
Sourcecodester online Complaint Site |
|
Weaknesses | CWE-89 | |
CPEs | cpe:2.3:a:sourcecodester:online_complaint_site:*:*:*:*:*:*:*:* | |
Vendors & Products |
Sourcecodester
Sourcecodester online Complaint Site |
|
Metrics |
cvssV3_1
|
Tue, 22 Oct 2024 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | SQL Injection vulnerability in Online Complaint Site v.1.0 allows a remote attacker to escalate privileges via the username and password parameters in the /admin.index.php component. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-10-22T00:00:00
Updated: 2024-10-23T15:04:59.499Z
Reserved: 2024-08-21T00:00:00
Link: CVE-2024-44812
Vulnrichment
Updated: 2024-10-23T15:04:53.777Z
NVD
Status : Analyzed
Published: 2024-10-22T22:15:05.543
Modified: 2024-10-25T16:56:11.150
Link: CVE-2024-44812
Redhat
No data.