First published: Sat Oct 19 2024(Updated: )
A vulnerability was found in PHPGurukul Boat Booking System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/password-recovery.php of the component Reset Your Password Page. The manipulation of the argument username leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGurukul Boat Booking System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-10157 is rated as critical due to its potential for serious exploitation.
To fix CVE-2024-10157, it is recommended to immediately update the PHPGurukul Boat Booking System to the latest patched version.
CVE-2024-10157 affects the Reset Your Password Page component, specifically the file /admin/password-recovery.php.
CVE-2024-10157 represents an SQL injection vulnerability stemming from improper handling of the username argument.
CVE-2024-10157 specifically affects version 1.0 of the PHPGurukul Boat Booking System.