CVE-2024-5893: SourceCodester Cab Management System sql injection
A vulnerability classified as critical has been found in SourceCodester Cab Management System 1.0. This affects an unknown part of the file /cms/classes/Users.php?f=deleteclient. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-268137 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5893?
CVE-2024-5893 is classified as a critical vulnerability.
What type of vulnerability is CVE-2024-5893?
CVE-2024-5893 is a SQL injection vulnerability.
How do I fix CVE-2024-5893?
To fix CVE-2024-5893, validate and sanitize user input, particularly the 'id' parameter in the /cms/classes/Users.php?f=delete_client file.
What systems are affected by CVE-2024-5893?
CVE-2024-5893 affects the Oretnom23 Cab Management System version 1.0.
Can CVE-2024-5893 be exploited remotely?
Yes, CVE-2024-5893 can be exploited remotely.