CVE-2024-46078: SQL Injection
Published Oct 4, 2024
·Updated
itsourcecode Sports Management System Project 1.0 is vulnerable to SQL Injection in the function deletecategory of the file sportsscheduling/player.php via the argument id.
Affected Software
2 affected components
itsourcecode Sports Management System
Adonesevangelista Sports Management System=1.0
Event History
Oct 4, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-46078?
CVE-2024-46078 has a high severity due to the potential for SQL Injection attacks that could compromise the database.
2
How do I fix CVE-2024-46078?
To fix CVE-2024-46078, validate and sanitize user input in the delete_category function to prevent SQL Injection.
3
Which software is affected by CVE-2024-46078?
The affected software for CVE-2024-46078 is the itsourcecode Sports Management System Project version 1.0.
4
What type of vulnerability is CVE-2024-46078?
CVE-2024-46078 is a SQL Injection vulnerability that allows attackers to manipulate the database through unsanitized inputs.
5
What is the impact of exploiting CVE-2024-46078?
Exploitation of CVE-2024-46078 can lead to unauthorized access to sensitive data and potential database manipulation.