CVE-2024-2678: Campcodes Online Job Finder System controller.php sql injection
A vulnerability was found in Campcodes Online Job Finder System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/applicants/controller.php. The manipulation of the argument JOBREGID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-257378 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2678?
CVE-2024-2678 is classified as a critical severity vulnerability.
How does CVE-2024-2678 affect the Campcodes Online Job Finder System?
CVE-2024-2678 affects an unknown functionality in /admin/applicants/controller.php, leading to SQL injection vulnerabilities.
What is the potential impact of exploiting CVE-2024-2678?
Exploitation of CVE-2024-2678 may allow attackers to execute arbitrary SQL commands on the database.
How do I fix CVE-2024-2678?
To fix CVE-2024-2678, ensure proper input validation and use parameterized queries in your application.
Which versions of Campcodes Online Job Finder System are affected by CVE-2024-2678?
CVE-2024-2678 affects version 1.0 of the Campcodes Online Job Finder System.