First published: Sun Dec 29 2024(Updated: )
A vulnerability has been found in code-projects Responsive Hotel Site 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/newsletter.php. The manipulation of the argument eid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Fabianros Responsive Hotel Site | ||
Fabianros Responsive Hotel Site | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-13008 is classified as a critical vulnerability.
CVE-2024-13008 allows for SQL injection through the manipulation of the eid parameter in the file /admin/newsletter.php.
CVE-2024-13008 affects version 1.0 of the code-projects Responsive Hotel Site.
To mitigate CVE-2024-13008, validate and sanitize user input to prevent SQL injection in the affected application.
If your system is vulnerable to CVE-2024-13008, it is recommended to immediately apply security patches or updates from the vendor.