CVE-2024-0730: Project Worlds Online Time Table Generator course_ajax.php sql injection
A vulnerability, which was classified as critical, was found in Project Worlds Online Time Table Generator 1.0. This affects an unknown part of the file courseajax.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-251553 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0730?
CVE-2024-0730 is classified as a critical vulnerability.
How does CVE-2024-0730 exploit occur?
CVE-2024-0730 exploits occur through SQL injection via manipulation of the argument id in the course_ajax.php file.
What software is affected by CVE-2024-0730?
CVE-2024-0730 affects Project Worlds Online Time Table Generator version 1.0.
Can CVE-2024-0730 be exploited remotely?
Yes, CVE-2024-0730 can be exploited remotely.
How do I fix CVE-2024-0730?
To fix CVE-2024-0730, ensure to validate and sanitize user inputs to prevent SQL injection attacks.