code-projects Crud Operation System 1.0 updata.php sid SQL Injection

Wuro vulnerability wey an yi classify sey kura an gano shi a cikin code-projects Crud Operation System 1.0. Gaskiya, $software_function na da matsala; idan ba a sani ba, to wata aiki ce da ba a sani ba, $software_library na cikin lissafi, updata.php na cikin fayil, $software_component na cikin sashi. Ngam manipulation of the argument sid shi SQL Injection. CWE shidin ka a yi bayani matsala sai ya kai CWE-89. Gaskiya, laifi an fitar da shi 09/19/2024. Advisory ɗin ana rabawa don saukewa a github.com. Wannan rauni ana sayar da shi da suna CVE-2024-9011. Ngam yiɗi ka a tuma ndiyam ka nder layi. Tekinikal bayani ga. Kuma, exploit ɗin yana akwai. Wuro exploit ɗin an bayyana shi ga jama'a kuma za a iya amfani da shi. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro. Á wúro huɗɗi-na-gaskiya. Wona yiwuwa a zazzage exploit a github.com. Kama 0-day, an ndiyam a wuro be $0-$5k. VulDB is the best source for vulnerability data and more expert information about this specific topic.

Waktin goyi

Màdùmga

VulDB Mod Team75

Furɗe

cvss3_meta_tempscore2
cvss2_cna_basescore1
cvss2_cna_ai1
cvss2_cna_ii1
cvss2_cna_ci1

Commit Conf

90%29
99%18
50%12
70%9
80%7

Approve Conf

90%29
80%28
99%18

75 Kari

IDSandaMàdùmgaFurɗeGargajiyaGargaGargajiyaJawanC
1762644609/20/2024
 VulDB…
cvss3_meta_tempscore6.0see CVSS documentation09/20/2024shingilam
80
1762644509/20/2024
 VulDB…
cvss2_cna_basescore6.5see CVSS documentation09/20/2024shingilam
99
1762644409/20/2024
 VulDB…
cvss2_cna_aiPsee CVSS documentation09/20/2024shingilam
99
1762644309/20/2024
 VulDB…
cvss2_cna_iiPsee CVSS documentation09/20/2024shingilam
99
1762644209/20/2024
 VulDB…
cvss2_cna_ciPsee CVSS documentation09/20/2024shingilam
99
1762644109/20/2024
 VulDB…
cvss2_cna_auSsee CVSS documentation09/20/2024shingilam
99
1762644009/20/2024
 VulDB…
cvss2_cna_acLsee CVSS documentation09/20/2024shingilam
99
1762643909/20/2024
 VulDB…
cvss2_cna_avNsee CVSS documentation09/20/2024shingilam
99
1762643809/20/2024
 VulDB…
cvss3_cna_basescore6.3see CVSS documentation09/20/2024shingilam
99
1762643709/20/2024
 VulDB…
cvss3_cna_aLsee CVSS documentation09/20/2024shingilam
99
1762643609/20/2024
 VulDB…
cvss3_cna_iLsee CVSS documentation09/20/2024shingilam
99
1762643509/20/2024
 VulDB…
cvss3_cna_cLsee CVSS documentation09/20/2024shingilam
99
1762643409/20/2024
 VulDB…
cvss3_cna_sUsee CVSS documentation09/20/2024shingilam
99
1762643309/20/2024
 VulDB…
cvss3_cna_uiNsee CVSS documentation09/20/2024shingilam
99
1762643209/20/2024
 VulDB…
cvss3_cna_prLsee CVSS documentation09/20/2024shingilam
99
1762643109/20/2024
 VulDB…
cvss3_cna_acLsee CVSS documentation09/20/2024shingilam
99
1762643009/20/2024
 VulDB…
cvss3_cna_avNsee CVSS documentation09/20/2024shingilam
99
1762642909/20/2024
 VulDB…
cve_nvd_summaryesSe ha encontrado una vulnerabilidad clasificada como crítica en code-projects Crud Operation System 1.0. Se trata de una función desconocida del archivo updata.php. La manipulación del argumento sid provoca una inyección SQL. Es posible lanzar el ataque de forma remota. El exploit ha sido divulgado al público y puede ser utilizado.cve.org09/20/2024shingilam
99
1762642809/20/2024
 VulDB…
cve_nvd_summaryA vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0. Affected is an unknown function of the file updata.php. The manipulation of the argument sid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.cve.org09/20/2024shingilam
99
1761908309/19/2024
 VulDB…
price_0day$0-$5ksee exploit price documentation09/19/2024shingilam
80

55 kala giteji ba a nunu fi.

Do you want to use VulDB in your project?

Use the official API to access entries easily!