A vulnerability, which was classified as critical, was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. Affected is the function save_users of the file /classes/Users.php?f=save. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-268140.
Metrics
Affected Vendors & Products
References
History
Fri, 23 Aug 2024 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Oretnom23
Oretnom23 employee And Visitor Gate Pass Logging System |
|
CPEs | cpe:2.3:a:oretnom23:employee_and_visitor_gate_pass_logging_system:1.0:*:*:*:*:*:*:* | |
Vendors & Products |
Oretnom23
Oretnom23 employee And Visitor Gate Pass Logging System |
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-06-12T15:31:03.691Z
Updated: 2024-08-01T21:25:03.162Z
Reserved: 2024-06-12T08:59:29.316Z
Link: CVE-2024-5896
Vulnrichment
Updated: 2024-08-01T21:25:03.162Z
NVD
Status : Modified
Published: 2024-06-12T16:15:12.813
Modified: 2024-11-21T09:48:32.373
Link: CVE-2024-5896
Redhat
No data.