First published: Thu Dec 19 2024(Updated: )
A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been classified as critical. Affected is an unknown function of the file editbill.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Vehicle Management System | ||
Adrianmercurio Vehicle Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12784 has been classified as critical.
CVE-2024-12784 can be exploited through SQL injection via the id argument in editbill.php.
CVE-2024-12784 affects users of itsourcecode Vehicle Management System version 1.0.
To fix CVE-2024-12784, validate and sanitize input data in the editbill.php file to prevent SQL injection.
Yes, CVE-2024-12784 can be attacked remotely.