CVE-2020-24932: SQL Injection
Published Oct 27, 2021
·Updated
An SQL Injection vulnerability exists in Sourcecodester Complaint Management System 1.0 via the cid parameter in complaint-details.php.
Affected Software
2 affected components
Sourcecodester Complaint Management System=1.0
Razormist Complaint Management System=1.0
Event History
Oct 27, 2021
CVE Published
via MITRE·01:57 PM
Data Sourced
via MITRE·01:57 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this SQL Injection vulnerability?
The vulnerability ID for this SQL Injection vulnerability is CVE-2020-24932.
2
What is the affected software?
The affected software is Sourcecodester Complaint Management System 1.0.
3
How does the SQL Injection vulnerability occur?
The SQL Injection vulnerability occurs via the cid parameter in complaint-details.php.
4
What is the severity of CVE-2020-24932?
The severity of CVE-2020-24932 is critical with a CVSS score of 9.8.
5
Is there a known exploit for this vulnerability?
Yes, there is a known exploit for this vulnerability which can be found at https://www.exploit-db.com/exploits/48758.