CVE-2024-35511: SQL Injection
Published May 28, 2024
·Updated
phpgurukul Men Salon Management System v2.0 is vulnerable to SQL Injection via the "username" parameter of /msms/admin/index.php.
Affected Software
2 affected components
Phpgurukul Men Salon Management System=2.0
Phpgurukul Men Salon Management System=2.0
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 28, 2024
CVE Published
via NVD·09:16 PM
Aug 2, 2024
Data Sourced
via MITRE·03:21 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35511?
CVE-2024-35511 is considered a high severity vulnerability due to its potential for SQL Injection attacks.
2
How do I fix CVE-2024-35511?
To fix CVE-2024-35511, sanitize and validate the 'username' parameter before using it in SQL queries to prevent SQL Injection.
3
What type of vulnerability is CVE-2024-35511?
CVE-2024-35511 is an SQL Injection vulnerability found in the phpgurukul Men Salon Management System v2.0.
4
What components are affected by CVE-2024-35511?
CVE-2024-35511 affects the admin interface of the phpgurukul Men Salon Management System v2.0.
5
Can CVE-2024-35511 lead to data compromise?
Yes, CVE-2024-35511 can lead to unauthorized access to sensitive data in the database due to SQL Injection.