First published: Thu Oct 24 2024(Updated: )
An issue in SourceCodester Purchase Order Management System v1.0 allows a remote attacker to execute arbitrary code via the /admin?page=user component
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Purchase Order Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48454 has a high severity rating due to its potential for remote code execution that can compromise the system.
To fix CVE-2024-48454, update your SourceCodester Purchase Order Management System to the latest version that addresses this vulnerability.
The impacts of CVE-2024-48454 include unauthorized access, data theft, and the ability for attackers to execute arbitrary code on the server.
Any user of SourceCodester Purchase Order Management System v1.0 is potentially affected by CVE-2024-48454.
You can identify vulnerability to CVE-2024-48454 by checking if your installation of SourceCodester Purchase Order Management System is version 1.0 and by reviewing the code for insecure components allowing remote code execution.