CVE-2024-11860: SourceCodester Best House Rental Management System POST Request ajax.php improper authorization
A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. This affects an unknown part of the file /rental/ajax.php?action=deletetenant of the component POST Request Handler. The manipulation of the argument id leads to improper authorization. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-11860?
CVE-2024-11860 is classified as a critical vulnerability.
How do I fix CVE-2024-11860?
To fix CVE-2024-11860, it is recommended to update to the latest version of the Best House Rental Management System.
What component is affected by CVE-2024-11860?
CVE-2024-11860 affects the POST Request Handler component in the file /rental/ajax.php.
What is the impact of CVE-2024-11860?
The impact of CVE-2024-11860 is related to improper manipulation of the 'id' argument, which could lead to unauthorized actions.
Which version of the software is impacted by CVE-2024-11860?
The vulnerability CVE-2024-11860 impacts version 1.0 of the Best House Rental Management System.