CVE-2024-5359: PHPGurukul Zoo Management System foreigner-search.php sql injection
Published May 26, 2024
·Updated
A vulnerability was found in PHPGurukul Zoo Management System 2.1. It has been classified as critical. This affects an unknown part of the file /admin/foreigner-search.php. The manipulation of the argument searchdata leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-266271.
Affected Software
2 affected components
Phpgurukul Zoo Management System
Phpgurukul Zoo Management System=2.1
Event History
May 26, 2024
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-5359?
CVE-2024-5359 is classified as a critical vulnerability.
2
Where is CVE-2024-5359 found in the PHPGurukul Zoo Management System?
CVE-2024-5359 is found in the file /admin/foreigner-search.php.
3
What type of vulnerability is CVE-2024-5359?
CVE-2024-5359 is a SQL injection vulnerability.
4
How do I fix CVE-2024-5359?
To fix CVE-2024-5359, validate and sanitize the input for the 'searchdata' argument to prevent SQL injection.
5
Can CVE-2024-5359 be exploited remotely?
Yes, CVE-2024-5359 can be exploited remotely.