CVE-2024-2575: SourceCodester Employee Task Management System task-details.php authorization
A vulnerability, which was classified as critical, has been found in SourceCodester Employee Task Management System 1.0. Affected by this issue is some unknown functionality of the file /task-details.php. The manipulation of the argument taskid leads to authorization bypass. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-257078 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2575?
CVE-2024-2575 is classified as a critical vulnerability.
What type of vulnerability is CVE-2024-2575?
CVE-2024-2575 is an authorization bypass vulnerability affecting the task_id argument in the task-details.php file.
How do I fix CVE-2024-2575?
To fix CVE-2024-2575, you should implement proper authentication checks for the task_id parameter in the affected file.
Which systems are affected by CVE-2024-2575?
CVE-2024-2575 affects SourceCodester Employee Task Management System version 1.0.
What consequences can occur due to CVE-2024-2575?
Exploitation of CVE-2024-2575 may allow unauthorized users to access or manipulate sensitive task management functions.