CVE-2024-11059: Project Worlds Free Download Online Shopping System success.php sql injection
A vulnerability was found in Project Worlds Free Download Online Shopping System up to 192.168.1.88. It has been rated as critical. This issue affects some unknown processing of the file /online-shopping-webvsite-in-php-master/success.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11059?
CVE-2024-11059 has been rated as critical due to its impactful vulnerability within the Project Worlds Free Download Online Shopping System.
What components are affected by CVE-2024-11059?
CVE-2024-11059 affects the Project Worlds Free Download Online Shopping System versions up to 192.168.1.88.
How do I fix CVE-2024-11059?
To fix CVE-2024-11059, update the Project Worlds Free Download Online Shopping System to a version that is not vulnerable.
What is the cause of CVE-2024-11059?
CVE-2024-11059 is caused by the manipulation of the argument 'id' in the file /online-shopping-webvsite-in-php-master/success.php.
Is there a public exploit for CVE-2024-11059?
Currently, there is no public exploit documented for CVE-2024-11059, but its critical rating suggests potential for exploitation.