A SQL injection vulnerability was found in PHPGURUKUL Vehicle Parking Management System v1.13 in /users/view-detail.php. This vulnerability affects the viewid parameter, where improper input sanitization allows attackers to inject malicious SQL queries.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Mon, 02 Dec 2024 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Phpgurukul
Phpgurukul vehicle Parking Management System
Weaknesses CWE-89
CPEs cpe:2.3:a:phpgurukul:vehicle_parking_management_system:1.13:*:*:*:*:*:*:*
Vendors & Products Phpgurukul
Phpgurukul vehicle Parking Management System
Metrics cvssV3_1

{'score': 5.4, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 02 Dec 2024 16:30:00 +0000

Type Values Removed Values Added
Description A SQL injection vulnerability was found in PHPGURUKUL Vehicle Parking Management System v1.13 in /users/view-detail.php. This vulnerability affects the viewid parameter, where improper input sanitization allows attackers to inject malicious SQL queries.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-12-02T19:27:50.051Z

Reserved: 2024-11-20T00:00:00

Link: CVE-2024-53364

cve-icon Vulnrichment

Updated: 2024-12-02T19:26:41.205Z

cve-icon NVD

Status : Analyzed

Published: 2024-12-02T17:15:12.933

Modified: 2025-04-07T15:04:27.477

Link: CVE-2024-53364

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.