CVE-2024-5117: SourceCodester Event Registration System portal.php sql injection
A vulnerability, which was classified as critical, was found in SourceCodester Event Registration System 1.0. This affects an unknown part of the file portal.php. The manipulation of the argument username/password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-265197 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5117?
CVE-2024-5117 is classified as a critical vulnerability.
What is the nature of the vulnerability in CVE-2024-5117?
CVE-2024-5117 is an SQL injection vulnerability affecting the username/password inputs in the SourceCodester Event Registration System.
How do I fix CVE-2024-5117?
To fix CVE-2024-5117, sanitize and validate user input to prevent SQL injection vulnerabilities.
Can CVE-2024-5117 be exploited remotely?
Yes, CVE-2024-5117 can be exploited remotely, allowing attackers to manipulate the database through SQL injection.
Which version of the software is affected by CVE-2024-5117?
CVE-2024-5117 affects version 1.0 of the SourceCodester Event Registration System.