CVE-2024-6900: SourceCodester Record Management System edit_emp.php sql injection
A vulnerability was found in SourceCodester Record Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file editemp.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-271925 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-6900?
CVE-2024-6900 has been rated as critical due to its potential for remote SQL injection attacks.
How does CVE-2024-6900 exploit the Record Management System?
CVE-2024-6900 exploits the Record Management System through SQL injection by manipulating the 'id' argument in the edit_emp.php file.
What systems are affected by CVE-2024-6900?
CVE-2024-6900 affects SourceCodester Record Management System version 1.0.
How can I mitigate CVE-2024-6900?
To mitigate CVE-2024-6900, validate and sanitize user inputs and limit database privileges.
Is CVE-2024-6900 a remote vulnerability?
Yes, CVE-2024-6900 can be exploited remotely, allowing attackers to execute SQL injection without local access.