First published: Mon Mar 04 2024(Updated: )
A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been classified as critical. Affected is an unknown function of the file admin_class.php. The manipulation of the argument img leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-255588.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Best POS Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2156 has been classified as critical.
CVE-2024-2156 is a SQL injection vulnerability.
CVE-2024-2156 can be exploited remotely by manipulating the img argument in admin_class.php.
CVE-2024-2156 affects the Mayurik Best POS Management System version 1.0.
To fix CVE-2024-2156, validate and sanitize all user inputs to prevent SQL injection.