CVE-2024-3620: SourceCodester Kortex Lite Advocate Office Management System adds.php sql injection
A vulnerability was found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /control/adds.php. The manipulation of the argument name/gender/dob/email/mobile/address leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-260276.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3620?
CVE-2024-3620 is classified as a critical vulnerability.
How do I fix CVE-2024-3620?
To mitigate CVE-2024-3620, update the SourceCodester Kortex Lite Advocate Office Management System to a patched version as soon as available.
Which versions are affected by CVE-2024-3620?
CVE-2024-3620 affects version 1.0 of the SourceCodester Kortex Lite Advocate Office Management System.
What type of attack is possible with CVE-2024-3620?
CVE-2024-3620 can be exploited through manipulation of input parameters such as name, gender, dob, email, mobile, and address.
Who can be impacted by CVE-2024-3620?
Users and organizations utilizing the affected version of the Kortex Lite Advocate Office Management System are at risk due to CVE-2024-3620.