First published: Sat Jun 15 2024(Updated: )
A vulnerability was found in itsourcecode Online Book Store 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_delete.php. The manipulation of the argument bookisbn leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-268721 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
itsourcecode Online Bookstore | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6013 has been rated as a critical vulnerability.
CVE-2024-6013 affects the file admin_delete.php in the Online Book Store 1.0.
The vulnerability in CVE-2024-6013 manifests as a SQL injection due to improper handling of the bookisbn parameter.
Yes, CVE-2024-6013 can be exploited remotely.
To fix CVE-2024-6013, ensure proper validation and sanitization of user inputs in the admin_delete.php file.