CVE-2024-3424: SourceCodester Online Courseware listscore.php sql injection
Published Apr 7, 2024
·Updated
A vulnerability classified as critical has been found in SourceCodester Online Courseware 1.0. Affected is an unknown function of the file admin/listscore.php. The manipulation of the argument title leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-259596.
Affected Software
1 affected component
Argie Online Courseware=1.0
Event History
Apr 7, 2024
CVE Published
via MITRE·03:31 PM
Data Sourced
via MITRE·03:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-3424?
CVE-2024-3424 is classified as a critical vulnerability.
2
How do I fix CVE-2024-3424?
To fix CVE-2024-3424, you should update the SourceCodester Online Courseware to the latest version.
3
What type of vulnerability is CVE-2024-3424?
CVE-2024-3424 is an SQL injection vulnerability.
4
Can CVE-2024-3424 be exploited remotely?
Yes, CVE-2024-3424 can be exploited remotely.
5
Which file is affected by CVE-2024-3424?
The file affected by CVE-2024-3424 is admin/listscore.php.