CVE-2024-10752: Codezips Pet Shop Management System productsadd.php sql injection
A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects an unknown part of the file /productsadd.php. The manipulation of the argument id/name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions contradicting file names to be affected.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10752?
CVE-2024-10752 has been classified as a critical vulnerability.
How do I fix CVE-2024-10752?
To fix CVE-2024-10752, ensure that you sanitize and validate user inputs on the /productsadd.php file to prevent SQL injection.
What is the impact of CVE-2024-10752?
The impact of CVE-2024-10752 allows an attacker to remotely exploit SQL injection vulnerabilities.
Which versions of Codezips Pet Shop Management System are affected by CVE-2024-10752?
CVE-2024-10752 affects Codezips Pet Shop Management System version 1.0.
Can CVE-2024-10752 be exploited remotely?
Yes, CVE-2024-10752 can be exploited remotely.