First published: Tue Oct 22 2024(Updated: )
SQL Injection vulnerability in Online Complaint Site v.1.0 allows a remote attacker to escalate privileges via the username and password parameters in the /admin.index.php component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Janobe Online Complaint Site | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-44812 is classified as a high severity SQL Injection vulnerability.
To fix CVE-2024-44812, update the Online Complaint Site to the latest version or sanitize user inputs in the affected parameters.
CVE-2024-44812 allows remote attackers to escalate privileges, potentially leading to unauthorized access to sensitive administrative functions.
CVE-2024-44812 affects Online Complaint Site version 1.0.
Yes, CVE-2024-44812 can be exploited remotely by an attacker targeting the affected /admin.index.php component.