A vulnerability classified as critical was found in SourceCodester Tracking Monitoring Management System 1.0. This vulnerability affects unknown code of the file /ajax.php?action=save_establishment. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-273340.
History

Fri, 09 Aug 2024 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Oretnom23
Oretnom23 tracking Monitoring Management System
CPEs cpe:2.3:a:oretnom23:tracking_monitoring_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Oretnom23
Oretnom23 tracking Monitoring Management System

Wed, 07 Aug 2024 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Sourcecodester
Sourcecodester tracking Monitoring Management System
CPEs cpe:2.3:a:sourcecodester:tracking_monitoring_management_system:1.0:*:*:*:*:*:*:*
Vendors & Products Sourcecodester
Sourcecodester tracking Monitoring Management System
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-08-01T18:00:06.799Z

Updated: 2024-08-07T14:40:20.678Z

Reserved: 2024-08-01T07:37:31.202Z

Link: CVE-2024-7361

cve-icon Vulnrichment

Updated: 2024-08-07T14:40:13.999Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-01T18:15:27.140

Modified: 2024-08-09T14:25:08.850

Link: CVE-2024-7361

cve-icon Redhat

No data.