First published: Thu Dec 26 2024(Updated: )
A vulnerability, which was classified as critical, was found in code-projects Simple Admin Panel 1.0. Affected is an unknown function of the file addVariationController.php. The manipulation of the argument qty leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Code-Projects Simple Admin Panel | =1.0 | |
Code-Projects Simple Admin Panel | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-12937 is classified as a critical vulnerability.
To fix CVE-2024-12937, sanitize and validate inputs in the addVariationController.php file to prevent SQL injection.
CVE-2024-12937 affects version 1.0 of the Code-Projects Simple Admin Panel.
Yes, CVE-2024-12937 can be exploited remotely through an SQL injection attack.
CVE-2024-12937 is an SQL injection vulnerability that allows manipulation of database queries.