A vulnerability, which was classified as critical, was found in itsourcecode Bike Delivery System 1.0. Affected is an unknown function of the file contact_us_action.php. The manipulation of the argument name leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-273648.
History

Wed, 11 Sep 2024 20:15:00 +0000

Type Values Removed Values Added
First Time appeared Rainniar
Rainniar bike Delivery System
CPEs cpe:2.3:a:rainniar:bike_delivery_system:1.0:*:*:*:*:*:*:*
Vendors & Products Rainniar
Rainniar bike Delivery System

Tue, 06 Aug 2024 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Itsourcecode
Itsourcecode bike Delivery System
CPEs cpe:2.3:a:itsourcecode:bike_delivery_system:1.0:*:*:*:*:*:*:*
Vendors & Products Itsourcecode
Itsourcecode bike Delivery System
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-08-06T04:00:08.556Z

Updated: 2024-08-06T19:21:59.022Z

Reserved: 2024-08-05T19:50:25.457Z

Link: CVE-2024-7505

cve-icon Vulnrichment

Updated: 2024-08-06T19:20:16.352Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-06T04:16:47.857

Modified: 2024-09-11T19:53:44.640

Link: CVE-2024-7505

cve-icon Redhat

No data.