CVE-2024-0473: code-projects Dormitory Management System comment.php sql injection
A vulnerability classified as critical has been found in code-projects Dormitory Management System 1.0. Affected is an unknown function of the file comment.php. The manipulation of the argument com leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-250578 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0473?
CVE-2024-0473 is classified as a critical vulnerability.
What kind of vulnerability is CVE-2024-0473?
CVE-2024-0473 is a SQL injection vulnerability.
How can CVE-2024-0473 be exploited?
CVE-2024-0473 can be exploited remotely by manipulating the argument 'com' in the file comment.php.
Which software is affected by CVE-2024-0473?
CVE-2024-0473 affects code-projects Dormitory Management System version 1.0.
How do I fix CVE-2024-0473?
To fix CVE-2024-0473, input validation and parameterized queries should be implemented in the comment.php file.