CVE-2024-55104: SQL Injection
Published Dec 16, 2024
·Updated
Online Nurse Hiring System v1.0 was discovered to contain multiple SQL injection vulnerabilities in the component /admin/add-nurse.php via the gender and emailid parameters.
Affected Software
2 affected components
Phpgurukul Online Nurse Hiring System=1.0
Online Nurse Hiring System Online Nurse Hiring System
Event History
Dec 16, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-55104?
CVE-2024-55104 is classified as a critical vulnerability due to its potential for SQL injection attacks.
2
How do I fix CVE-2024-55104?
To fix CVE-2024-55104, implement input validation and sanitization on the gender and emailid parameters in the /admin/add-nurse.php component.
3
What impact does CVE-2024-55104 have on Online Nurse Hiring System?
CVE-2024-55104 allows an attacker to execute arbitrary SQL commands, potentially compromising sensitive data in the Online Nurse Hiring System.
4
Which versions of Online Nurse Hiring System are affected by CVE-2024-55104?
Only Online Nurse Hiring System version 1.0 is affected by CVE-2024-55104.
5
Is CVE-2024-55104 publicly known?
Yes, CVE-2024-55104 has been publicly documented and is known within the cybersecurity community.