CVE-2024-7287: SourceCodester Establishment Billing Management System manage_user.php sql injection
A vulnerability was found in SourceCodester Establishment Billing Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /manageuser.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-273156.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7287?
CVE-2024-7287 has been classified as critical due to its potential impact.
How do I fix CVE-2024-7287?
To fix CVE-2024-7287, sanitize user inputs to prevent SQL injection vulnerabilities in the /manage_user.php file.
What type of attack can be executed through CVE-2024-7287?
CVE-2024-7287 allows for SQL injection attacks that can manipulate database queries.
Which software is affected by CVE-2024-7287?
CVE-2024-7287 affects the SourceCodester Establishment Billing Management System version 1.0.
Which function is vulnerable in CVE-2024-7287?
CVE-2024-7287 identifies an unknown function of the file /manage_user.php as being vulnerable.