PHPGurukul Medical Card Generation System 1.0 Managecard View Detail Page view-card-detail.php viewid SQL Injection

Gaskiya vulnerability da aka ware a matsayin kura an samu a PHPGurukul Medical Card Generation System 1.0. Hakika, aikin $software_function ne ya shafa; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburaren $software_library, a cikin fayil /admin/view-card-detail.php, a cikin sashen Managecard View Detail Page. A sa manipulation of the argument viewid ka SQL Injection. Idan an yi amfani da CWE don bayyana matsala, zai kai CWE-89. Hakika, rauni an bayyana shi 10/23/2024. Wannan matsala ana saninta da CVE-2024-10299. Ngam yiɗi ka a tuma ndiyam ka nder layi. Tekinikal faɗi ga. Har ila yau, exploit ɗin yana nan. An bayyana exploit ɗin ga mutane kuma yana iya amfani. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro. Á sàmbu huɗɗi-na-gaskiya. 0-day shima, an ndiyam a wuro be $0-$5k. Once again VulDB remains the best source for vulnerability data.

Waktin goyi

Màdùmga

VulDB Mod Team97

Furɗe

cvss3_meta_tempscore3
cvss3_meta_basescore2
cvss3_nvd_basescore1
cvss3_nvd_a1
cvss3_nvd_i1

Commit Conf

99%39
90%30
50%14
80%8
70%6

Approve Conf

99%39
90%30
80%28

97 Kari

IDSandaMàdùmgaFurɗeGargajiyaGargaGargajiyaJawanC
1801063110/26/2024
 VulDB…
cvss3_meta_tempscore5.4see CVSS documentation10/26/2024shingilam
80
1801063010/26/2024
 VulDB…
cvss3_meta_basescore5.5see CVSS documentation10/26/2024shingilam
80
1801062910/26/2024
 VulDB…
cvss3_nvd_basescore7.2nist.gov10/26/2024shingilam
99
1801062810/26/2024
 VulDB…
cvss3_nvd_aHnist.gov10/26/2024shingilam
99
1801062710/26/2024
 VulDB…
cvss3_nvd_iHnist.gov10/26/2024shingilam
99
1801062610/26/2024
 VulDB…
cvss3_nvd_cHnist.gov10/26/2024shingilam
99
1801062510/26/2024
 VulDB…
cvss3_nvd_sUnist.gov10/26/2024shingilam
99
1801062410/26/2024
 VulDB…
cvss3_nvd_uiNnist.gov10/26/2024shingilam
99
1801062310/26/2024
 VulDB…
cvss3_nvd_prHnist.gov10/26/2024shingilam
99
1801062210/26/2024
 VulDB…
cvss3_nvd_acLnist.gov10/26/2024shingilam
99
1801062110/26/2024
 VulDB…
cvss3_nvd_avNnist.gov10/26/2024shingilam
99
1801062010/26/2024
 VulDB…
cve_nvd_summaryesSe ha encontrado una vulnerabilidad clasificada como crítica en PHPGurukul Medical Card Generation System 1.0. Esta vulnerabilidad afecta al código desconocido del archivo /admin/view-card-detail.php del componente Managecard View Detail Page. La manipulación del argumento viewid conduce a una inyección SQL. El ataque puede iniciarse de forma remota. El exploit ha sido divulgado al público y puede utilizarse.cve.org10/26/2024shingilam
99
1798725410/24/2024
 VulDB…
cvss3_meta_tempscore4.5see CVSS documentation10/24/2024shingilam
80
1798725310/24/2024
 VulDB…
cvss2_cna_basescore5.8see CVSS documentation10/24/2024shingilam
99
1798725210/24/2024
 VulDB…
cvss2_cna_aiPsee CVSS documentation10/24/2024shingilam
99
1798725110/24/2024
 VulDB…
cvss2_cna_iiPsee CVSS documentation10/24/2024shingilam
99
1798725010/24/2024
 VulDB…
cvss2_cna_ciPsee CVSS documentation10/24/2024shingilam
99
1798724910/24/2024
 VulDB…
cvss2_cna_auMsee CVSS documentation10/24/2024shingilam
99
1798724810/24/2024
 VulDB…
cvss2_cna_acLsee CVSS documentation10/24/2024shingilam
99
1798724710/24/2024
 VulDB…
cvss2_cna_avNsee CVSS documentation10/24/2024shingilam
99

77 kala giteji ba a nunu fi.

Want to stay up to date on a daily basis?

Enable the mail alert feature now!