CVE-2024-0488: code-projects Fighting Cock Information System new-feed.php sql injection
A vulnerability was found in code-projects Fighting Cock Information System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/action/new-feed.php. The manipulation of the argument typefeed leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250593 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0488?
CVE-2024-0488 has been classified as critical.
How does CVE-2024-0488 affect Fighting Cock Information System 1.0?
CVE-2024-0488 allows for SQL injection through manipulation of the argument type_feed in the /admin/action/new-feed.php file.
Who is affected by CVE-2024-0488?
CVE-2024-0488 affects users of Fighting Cock Information System version 1.0.
How can I fix CVE-2024-0488?
To fix CVE-2024-0488, it's crucial to sanitize and validate the input for the type_feed parameter to prevent SQL injection.
What is the exploit potential of CVE-2024-0488?
The exploit potential of CVE-2024-0488 is high, allowing attackers to execute arbitrary SQL commands on the database.