CVE-2024-10424: Project Worlds Student Project Allocation System Project Selection Page remove_project.php sql injection
A vulnerability has been found in Project Worlds Student Project Allocation System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /student/projectselection/removeproject.php of the component Project Selection Page. The manipulation of the argument no leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10424?
CVE-2024-10424 is classified as a critical vulnerability.
How does CVE-2024-10424 affect the Project Worlds Student Project Allocation System?
CVE-2024-10424 affects an unknown functionality within the /student/project_selection/remove_project.php file.
What is the affected version for CVE-2024-10424?
CVE-2024-10424 affects version 1.0 of the Project Worlds Student Project Allocation System.
How can I fix CVE-2024-10424?
To fix CVE-2024-10424, ensure you update the Project Worlds Student Project Allocation System to a patched version that addresses this vulnerability.
What component is vulnerable in CVE-2024-10424?
CVE-2024-10424 involves the Project Selection Page component of the software.