First published: Wed Mar 20 2024(Updated: )
A vulnerability, which was classified as critical, was found in Campcodes Complete Online DJ Booking System 1.0. Affected is an unknown function of the file /admin/booking-search.php. The manipulation of the argument searchdata leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-257466 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Online DJ Booking Management System | ||
Online DJ Booking Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2713 is classified as a critical vulnerability.
CVE-2024-2713 is an SQL injection vulnerability.
To fix CVE-2024-2713, sanitize and validate all user inputs in the /admin/booking-search.php file.
CVE-2024-2713 affects Campcodes Complete Online DJ Booking System version 1.0.
Exploiting CVE-2024-2713 could allow an attacker to manipulate SQL queries, potentially leading to unauthorized data access.