CVE-2024-10507: Codezips Free Exam Hall Seating Management System login.php sql injection
Published Oct 30, 2024
·Updated
A vulnerability classified as critical was found in Codezips Free Exam Hall Seating Management System 1.0. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
Codezips Free Exam Hall Seating Management System=1.0
Event History
Oct 30, 2024
CVE Published
via MITRE·02:31 AM
Data Sourced
via MITRE·02:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-10507?
CVE-2024-10507 is classified as a critical vulnerability.
2
How do I fix CVE-2024-10507?
To fix CVE-2024-10507, ensure you sanitize and validate user input in the /login.php file to prevent SQL injection.
3
What type of vulnerability is CVE-2024-10507?
CVE-2024-10507 is a SQL injection vulnerability.
4
Is CVE-2024-10507 remotely exploitable?
Yes, CVE-2024-10507 can be exploited remotely.
5
Which software is affected by CVE-2024-10507?
CVE-2024-10507 affects Codezips Free Exam Hall Seating Management System version 1.0.