SourceCodester Record Management System sort_user.php sql injection
Published Jul 19, 2024
5.3
MEDIUMCVSS 4.0
EPSS 0.55%
Description
A vulnerability classified as critical was found in SourceCodester Record Management System 1.0. Affected by this vulnerability is an unknown functionality of the file sort_user.php. The manipulation of the argument sort leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-271927.
Affected products
-
- Version 1.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| SourceCodester | Record Management System | n/a |
|
- 1.0
-
- Version 1.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Record Management System Project | Record Management System | n/a |
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-47891 Advisory
- https://github.com/netmanzhang/VUL/blob/main/Record-Management-System-05.md exploitThird Party Advisory
- https://vuldb.com/?ctiid.271927 signaturepermissions-requiredPermissions RequiredVDB Entry
- https://vuldb.com/?id.271927 vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry
- https://vuldb.com/?submit.375195 third-party-advisoryThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2024-47891 | Advisory | |
| https://github.com/netmanzhang/VUL/blob/main/Record-Management-System-05.md | exploitThird Party Advisory | |
| https://vuldb.com/?ctiid.271927 | signaturepermissions-requiredPermissions RequiredVDB Entry | |
| https://vuldb.com/?id.271927 | vdb-entrytechnical-descriptionThird Party AdvisoryVDB Entry | |
| https://vuldb.com/?submit.375195 | third-party-advisoryThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.