First published: Mon Jul 22 2024(Updated: )
A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. This affects an unknown part of the file /employee_gatepass/admin/?page=employee/manage_employee. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272121 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
SourceCodester Employee and Visitor Gate Pass Logging System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6967 is classified as a critical vulnerability.
To fix CVE-2024-6967, ensure proper validation and sanitization of the 'id' argument to prevent SQL injection.
CVE-2024-6967 affects SourceCodester Employee and Visitor Gate Pass Logging System version 1.0.
CVE-2024-6967 is an SQL injection vulnerability.
CVE-2024-6967 occurs in the file /employee_gatepass/admin/?page=employee/manage_employee.