CVE-2024-41332: Medium severity computer laboratory management system vulnerability
Incorrect access control in the deletecategory function of Sourcecodester Computer Laboratory Management System v1.0 allows authenticated attackers with low-level privileges to arbitrarily delete categories.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41332?
CVE-2024-41332 is classified as a medium severity vulnerability due to its potential impact on data integrity.
How do I fix CVE-2024-41332?
To fix CVE-2024-41332, apply access control restrictions in the delete_category function to ensure only authorized users can delete categories.
Who is affected by CVE-2024-41332?
CVE-2024-41332 affects users of Sourcecodester Computer Laboratory Management System version 1.0.
What type of vulnerability is CVE-2024-41332?
CVE-2024-41332 is an access control vulnerability that allows authenticated attackers to delete categories improperly.
What is the exploitability of CVE-2024-41332?
CVE-2024-41332 can be exploited by authenticated attackers with low-level privileges, making it relatively easy to execute.