First published: Fri Oct 25 2024(Updated: )
Funadmin 5.0.2 is vulnerable to SQL Injection in `curd/table/savefield`.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
composer/funadmin/funadmin | <=5.0.2 | |
Funadmin | =5.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48226 has been classified as a high severity vulnerability due to its potential for SQL Injection attacks.
To fix CVE-2024-48226, update to a patched version of Funadmin that addresses the SQL Injection vulnerability.
CVE-2024-48226 affects Funadmin version 5.0.2 or earlier.
Yes, CVE-2024-48226 can be exploited remotely if the vulnerable application is accessible over the internet.
CVE-2024-48226 facilitates SQL Injection attacks, allowing attackers to manipulate database queries.