CVE-2024-53604: SQL Injection
A SQL Injection vulnerability was found in /covid-tms/checkavailability.php in PHPGurukul COVID 19 Testing Management System v1.0, which allows remote attackers to execute arbitrary code via the mobnumber POST request parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53604?
CVE-2024-53604 has a high severity rating due to the potential for remote code execution through SQL injection.
How do I fix CVE-2024-53604?
To fix CVE-2024-53604, validate and sanitize all input parameters to prevent SQL injection attacks.
What systems are affected by CVE-2024-53604?
CVE-2024-53604 affects PHPGurukul COVID 19 Testing Management System version 1.0.
What is SQL injection in the context of CVE-2024-53604?
SQL injection in CVE-2024-53604 refers to the exploitation of the mobnumber POST request parameter allowing attackers to execute arbitrary SQL queries.
Can CVE-2024-53604 lead to data breaches?
Yes, exploiting CVE-2024-53604 can lead to unauthorized access and potential data breaches.