CVE-2024-3445: SourceCodester Laundry Management System laporan_filter sql injection
A vulnerability was found in SourceCodester Laundry Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /karyawan/laporanfilter. The manipulation of the argument datakaryawan leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-259702 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3445?
CVE-2024-3445 is classified as a critical vulnerability.
How does CVE-2024-3445 affect the Laundry Management System?
CVE-2024-3445 affects the unknown code handling the 'data_karyawan' argument, leading to SQL injection.
How can I fix CVE-2024-3445?
To fix CVE-2024-3445, ensure proper input validation and parameterized queries in the affected code.
Which versions of the Laundry Management System are affected by CVE-2024-3445?
CVE-2024-3445 affects version 1.0 of the Oretnom23 Laundry Shop Management System.
Can CVE-2024-3445 lead to data breaches?
Yes, exploiting CVE-2024-3445 through SQL injection could potentially lead to data breaches.