CVE-2024-3465: SourceCodester Laundry Management System Transaki.php laporan_filter sql injection
A vulnerability was found in SourceCodester Laundry Management System 1.0. It has been classified as critical. Affected is the function laporanfilter of the file /application/controller/Transaki.php. The manipulation of the argument dari/sampai leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-259746 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3465?
CVE-2024-3465 has been classified as critical due to its potential for SQL injection.
How do I fix CVE-2024-3465?
To fix CVE-2024-3465, validate and sanitize the 'dari' and 'sampai' parameters in the laporan_filter function.
Which software is affected by CVE-2024-3465?
CVE-2024-3465 affects SourceCodester Laundry Management System version 1.0.
What type of vulnerability is CVE-2024-3465?
CVE-2024-3465 is a SQL injection vulnerability that allows attackers to manipulate database queries.
In which file does CVE-2024-3465 occur?
CVE-2024-3465 occurs in the file /application/controller/Transaki.php.