CVE-2024-6041: itsourcecode Gym Management System manage_user.php sql injection
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file manageuser.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-268765 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6041?
CVE-2024-6041 has been declared as critical due to its potential for remote SQL injection.
How does CVE-2024-6041 affect the Gym Management System?
CVE-2024-6041 affects the file manage_user.php, allowing attackers to manipulate the 'id' argument and execute SQL queries.
What type of vulnerability is CVE-2024-6041?
CVE-2024-6041 is classified as an SQL injection vulnerability.
Who is affected by CVE-2024-6041?
The vulnerability affects users of Admerc Gym Management System version 1.0.
How can I mitigate CVE-2024-6041?
To mitigate CVE-2024-6041, ensure to validate and sanitize all user inputs in the affected file.