CVE-2024-51060: SQL Injection
Published Oct 31, 2024
·Updated
Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the 'aid' parameter.
Affected Software
2 affected components
Projectworlds Online Admission System
Projectworlds Online Admission System=1.0
Event History
Oct 31, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-51060?
CVE-2024-51060 has a high severity due to its potential for SQL Injection exploitation.
2
How do I fix CVE-2024-51060?
To fix CVE-2024-51060, validate and sanitize the 'a_id' parameter in the index.php file to prevent SQL Injection.
3
What is affected by CVE-2024-51060?
CVE-2024-51060 affects Projectworlds Online Admission System version 1.
4
How can CVE-2024-51060 be exploited?
CVE-2024-51060 can be exploited by manipulating the 'a_id' parameter to execute arbitrary SQL commands.
5
Is CVE-2024-51060 under active exploitation?
As of now, there are no confirmed reports indicating active exploitation of CVE-2024-51060.