CVE-2024-10810: code-projects E-Health Care System app_request.php sql injection
Published Nov 5, 2024
·Updated
A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an unknown function of the file Doctor/apprequest.php. The manipulation of the argument appid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
Anisha E-health Care System=1.0
Event History
Nov 5, 2024
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-10810?
CVE-2024-10810 has been classified as critical.
2
How does CVE-2024-10810 exploitation occur?
Exploitation of CVE-2024-10810 occurs through SQL injection via the app_id argument in the Doctor/app_request.php file.
3
Can CVE-2024-10810 be exploited remotely?
Yes, CVE-2024-10810 can be exploited remotely.
4
Which software version is affected by CVE-2024-10810?
CVE-2024-10810 affects E-Health Care System version 1.0.
5
What type of vulnerability is CVE-2024-10810?
CVE-2024-10810 is classified as a SQL injection vulnerability.