CVE-2024-7278: itsourcecode Alton Management System team_save.php sql injection
A vulnerability was found in itsourcecode Alton Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/teamsave.php. The manipulation of the argument team leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-273147.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7278?
CVE-2024-7278 has been classified as a critical vulnerability.
How does CVE-2024-7278 impact the Alton Management System?
CVE-2024-7278 affects the /admin/team_save.php file and allows for SQL injection through manipulation of the 'team' argument.
Can CVE-2024-7278 be exploited remotely?
Yes, CVE-2024-7278 can be exploited remotely.
Which software version is affected by CVE-2024-7278?
CVE-2024-7278 affects version 1.0 of the itsourcecode Alton Management System.
What is the recommended fix for CVE-2024-7278?
Users should update to a patched version of the itsourcecode Alton Management System to mitigate CVE-2024-7278.