CVE-2024-11076: code-projects Job Recruitment activation.php sql injection
A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affects some unknown processing of the file /activation.php. The manipulation of the argument ehash leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11076?
CVE-2024-11076 is classified as a critical vulnerability.
What type of vulnerability is CVE-2024-11076?
CVE-2024-11076 is a SQL injection vulnerability affecting the Job Recruitment application.
How does CVE-2024-11076 impact user data?
The SQL injection in CVE-2024-11076 can lead to unauthorized access to sensitive data stored in the database.
How do I fix CVE-2024-11076?
To fix CVE-2024-11076, ensure proper input validation and use prepared statements to prevent SQL injection.
Can CVE-2024-11076 be exploited remotely?
Yes, CVE-2024-11076 can be exploited remotely through the vulnerable activation.php file.