CVE-2024-10137: code-projects Pharmacy Management System manage_medicine.php sql injection
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /managemedicine.php?action=delete. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10137?
CVE-2024-10137 has been rated as critical due to its potential for SQL injection.
How do I fix CVE-2024-10137?
To fix CVE-2024-10137, validate and sanitize user inputs before processing them in the /manage_medicine.php file.
What type of vulnerability is CVE-2024-10137?
CVE-2024-10137 is an SQL injection vulnerability that affects the Pharmacy Management System.
Which application is affected by CVE-2024-10137?
CVE-2024-10137 affects version 1.0 of the code-projects Pharmacy Management System.
What is the possible impact of exploiting CVE-2024-10137?
Exploiting CVE-2024-10137 may allow attackers to manipulate databases and execute unauthorized queries.