First published: Wed Nov 27 2024(Updated: )
A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. This affects an unknown part of the file /rental/ajax.php?action=delete_tenant of the component POST Request Handler. The manipulation of the argument id leads to improper authorization. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Best House Rental Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11860 is classified as a critical vulnerability.
To fix CVE-2024-11860, it is recommended to update to the latest version of the Best House Rental Management System.
CVE-2024-11860 affects the POST Request Handler component in the file /rental/ajax.php.
The impact of CVE-2024-11860 is related to improper manipulation of the 'id' argument, which could lead to unauthorized actions.
The vulnerability CVE-2024-11860 impacts version 1.0 of the Best House Rental Management System.