CVE-2020-24197: SQL Injection
A SQL injection vulnerability in the login component in Stock Management System v1.0 allows remote attacker to execute arbitrary SQL commands via the username parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-24197?
CVE-2020-24197 is a SQL injection vulnerability in the login component of Stock Management System v1.0.
How does CVE-2020-24197 affect the Stock Management System?
CVE-2020-24197 allows a remote attacker to execute arbitrary SQL commands via the username parameter of the login component.
What is the severity of CVE-2020-24197?
CVE-2020-24197 has a severity rating of 9.8, which is considered critical.
How can I fix CVE-2020-24197?
To fix CVE-2020-24197, you should update the Stock Management System to a version that has addressed the SQL injection vulnerability.
Where can I find more information about CVE-2020-24197?
You can find more information about CVE-2020-24197 at the following references: - [CXSecurity](https://cxsecurity.com/issue/WLB-2020090028) - [Source Codester](https://www.sourcecodester.com/php/14366/stock-management-system-php.html)