First published: Fri Mar 01 2024(Updated: )
SQL Injection vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the email address parameter in the index.php component.
Credit: Shubham Pandey cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Petrol Pump Management Software | ||
Petrol Pump Management Software | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-27746 is classified as a high severity vulnerability due to its potential to allow arbitrary code execution.
To fix CVE-2024-27746, validate and sanitize all user inputs in the email address parameter of the index.php component.
CVE-2024-27746 affects Petrol Pump Management Software version 1.0.
CVE-2024-27746 is an SQL Injection vulnerability that can be exploited via crafted payloads.
Yes, CVE-2024-27746 can be exploited remotely if the attacker has access to the input fields in the affected application.