First published: Wed Jun 12 2024(Updated: )
A vulnerability classified as critical has been found in SourceCodester Cab Management System 1.0. This affects an unknown part of the file /cms/classes/Users.php?f=delete_client. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-268137 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Cab Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5893 is classified as a critical vulnerability.
CVE-2024-5893 is a SQL injection vulnerability.
To fix CVE-2024-5893, validate and sanitize user input, particularly the 'id' parameter in the /cms/classes/Users.php?f=delete_client file.
CVE-2024-5893 affects the Oretnom23 Cab Management System version 1.0.
Yes, CVE-2024-5893 can be exploited remotely.