First published: Sun May 12 2024(Updated: )
A vulnerability was found in Kashipara College Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file edit_user.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-263924.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Kashipara College Management System | ||
Lopalopa College Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-4804 has been rated as critical due to its potential for SQL injection vulnerabilities.
CVE-2024-4804 affects Kashipara College Management System 1.0 and other related systems potentially running file edit_user.php.
To fix CVE-2024-4804, developers should implement proper input validation and parameterized queries to prevent SQL injection.
Yes, CVE-2024-4804 can be exploited remotely by manipulating the argument id in the vulnerable file.
CVE-2024-4804 is classified as an SQL injection vulnerability.