CVE-2024-54842: SQL Injection
Published Dec 12, 2024
·Updated
A SQL injection vulnerability was found in phpgurukul Online Nurse Hiring System v1.0 in /admin/password-recovery.php via the mobileno parameter.
Affected Software
2 affected components
Phpgurukul Online Nurse Hiring System
Phpgurukul Online Nurse Hiring System=1.0
Event History
Dec 12, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-54842?
CVE-2024-54842 is classified as a high-severity SQL injection vulnerability.
2
How do I fix CVE-2024-54842?
To fix CVE-2024-54842, validate and sanitize the 'mobileno' parameter before processing it in the /admin/password-recovery.php file.
3
What type of vulnerability is CVE-2024-54842?
CVE-2024-54842 is a SQL injection vulnerability that allows attackers to manipulate database queries.
4
Which software is affected by CVE-2024-54842?
CVE-2024-54842 affects version 1.0 of the phpgurukul Online Nurse Hiring System.
5
Could CVE-2024-54842 allow unauthorized access?
Yes, CVE-2024-54842 could potentially allow attackers to access sensitive data or perform unauthorized actions on the database.