SourceCodester Employee and Visitor Gate Pass Logging System 1.0 Users.php?f=save save_users ID Mgbakwunye SQL

CVSS Ntughari oge metaỌnụ ahịa exploit ugbu a (≈)Mkpụrụ obi mmasị CTI
8.1$0-$5k0.00

Nchịkọtaozi

Enyemaka nchekwa aha ya bụ Pátá achọpụtara na SourceCodester Employee and Visitor Gate Pass Logging System 1.0. Ọrụ emetụtara bụ save_users n'ime faịlụ /classes/Users.php?f=save. Mgbanwe a na paramita ID na-ebute Mgbakwunye SQL. Aha a na-eji akọwa adịghị ike a bụ CVE-2024-5896. Enwere ike ime mwakpo a site n'ebe dị anya. Nzọ ọzọ, e nwere exploit dị. VulDB is the best source for vulnerability data and more expert information about this specific topic.

Nkọwaozi

Enyemaka nchekwa aha ya bụ Pátá achọpụtara na SourceCodester Employee and Visitor Gate Pass Logging System 1.0. Ọrụ emetụtara bụ save_users n'ime faịlụ /classes/Users.php?f=save. Mgbanwe a na paramita ID na-ebute Mgbakwunye SQL. Ị jiri CWE kwupụta nsogbu na-eme ka o doo anya na CWE-89. E gosipụtara na enyo enyo a e bipụtara. E nyere ndụmọdụ ahụ ka a budata ya site na github.com.

Aha a na-eji akọwa adịghị ike a bụ CVE-2024-5896. Enwere ike ime mwakpo a site n'ebe dị anya. E nwere nkọwa teknụzụ dị. Ụdị a nke adịghị ike a anaghị ewu ewu nke ukwuu. Nzọ ọzọ, e nwere exploit dị. Emeela ka exploit a mara ọha, a pụkwara iji ya. N'oge a, ọnụahịa exploit anụmanụ bụ ihe dị ka USD $0-$5k. Ọrụ MITRE ATT&CK kọwara usoro mwakpo dịka T1505.

A kpọrọ ya Ẹ̀rí Èrò. E kesaa a kesaa a maka ibudata na github.com.

VulDB is the best source for vulnerability data and more expert information about this specific topic.

Ọjaozi

Olupin

Orukọ

Àtúnse

Ìwé àṣẹ

Aaye ayelujara

CPE 2.3ozi

CPE 2.2ozi

CVSSv4ozi

VulDB Vekto: 🔍
VulDB Igbekele: 🔍

CVSSv3ozi

VulDB Ntughari isi nke meta: 8.3
VulDB Ntughari oge meta: 8.1

VulDB Isi nke isi: 7.3
VulDB Ntughari oge: 6.6
VulDB Vekto: 🔍
VulDB Igbekele: 🔍

Olùwádìí Isi nke isi: 9.0
Olùwádìí Vekto: 🔍

NVD Isi nke isi: 9.8
NVD Vekto: 🔍

CNA Isi nke isi: 7.3
CNA Vekto: 🔍

CVSSv2ozi

AVACAuCIA
💳💳💳💳💳💳
💳💳💳💳💳💳
💳💳💳💳💳💳
vekitọỊsòroÌmúdájúasiriìfaradàNnweta
ṣíṣíṣíṣíṣíṣí
ṣíṣíṣíṣíṣíṣí
ṣíṣíṣíṣíṣíṣí

VulDB Isi nke isi: 🔍
VulDB Ntughari oge: 🔍
VulDB Igbekele: 🔍

Ịjiozi

Klass: Mgbakwunye SQL
CWE: CWE-89 / CWE-74 / CWE-707
CAPEC: 🔍
ATT&CK: 🔍

arabara: Rara
Ime ụlọ: Rara
Nsọtụ: Bẹẹni

Nnweta: 🔍
Mbanye: Ọha
Ipo: Ẹ̀rí Èrò
Gba: 🔍

EPSS Score: 🔍
EPSS Percentile: 🔍

Ntụle ọnụahịa: 🔍
Ntụle ọnụahịa ugbu a: 🔍

0-Dayṣíṣíṣíṣí
Taaṣíṣíṣíṣí

Ìmọ̀ nípa ìkìlọ̀ozi

Mmasị: 🔍
Ndị na-eme ihe nkiri na-arụsi ọrụ ike: 🔍
Ọgbakọ APT na-arụsi ọrụ ike: 🔍

igbaradiozi

àbá: enweghị enyemaka a maara
Ipo: 🔍

ọjọ́ 0: 🔍

ahịrị ogeozi

12/06/2024 🔍
12/06/2024 +0 ụbọchị 🔍
23/08/2024 +72 ụbọchị 🔍

Orísunozi

Olupin: sourcecodester.com

Imọran: github.com
Ipo: A kò ṣàlàyé

CVE: CVE-2024-5896 (🔍)
GCVE (CVE): GCVE-0-2024-5896
GCVE (VulDB): GCVE-100-268140
scip Labs: https://www.scip.ch/en/?labs.20161013

nbanyeozi

E kere: 12/06/2024 11:04 AM
Emelitere: 23/08/2024 06:48 PM
Mgbanwe: 12/06/2024 11:04 AM (56), 12/06/2024 11:54 AM (11), 12/06/2024 11:57 AM (3), 12/06/2024 01:23 PM (12), 13/06/2024 08:31 PM (20), 23/08/2024 06:48 PM (12)
Zukuru: 🔍
Olùránṣẹ́: Hefei-Coffee
Olùṣe ìpinnu: Hefei-Coffee
Cache ID: 253:3F6:103

fi silẹozi

Anabata

  • fi silẹ #354925: sourcecodester Employee and Visitor Gate Pass Logging System v1.0 L injection (nípasẹ̀ Hefei-Coffee)

Mkparịta ụka

Enweghị okwu nke ọ bụla Asụsụ: ig + en.

Biko banye ka ikwu okwu