CVE-2024-36568: SQL Injection
Published Jun 3, 2024
·Updated
Sourcecodester Gas Agency Management System v1.0 is vulnerable to SQL Injection via /gasmark/editbrand.php?id=.
Affected Software
1 affected component
Sourcecodester Gas Agency Management System
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
Jun 3, 2024
CVE Published
via NVD·02:15 PM
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeakness
Aug 2, 2024
Data Sourced
via MITRE·03:45 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-36568?
CVE-2024-36568 has a high severity rating due to its potential for SQL Injection attacks.
2
How do I fix CVE-2024-36568?
To fix CVE-2024-36568, ensure proper input validation and use parameterized queries to prevent SQL Injection.
3
What version of Gas Agency Management System is affected by CVE-2024-36568?
CVE-2024-36568 affects Sourcecodester Gas Agency Management System version 1.0.
4
What type of vulnerability is CVE-2024-36568?
CVE-2024-36568 is classified as an SQL Injection vulnerability.
5
How can CVE-2024-36568 be exploited by attackers?
Attackers can exploit CVE-2024-36568 by injecting malicious SQL code through the vulnerable parameters in the editbrand.php script.