First published: Wed Jul 31 2024(Updated: )
A vulnerability classified as critical has been found in itsourcecode Online Blood Bank Management System 1.0. This affects an unknown part of the file /admin/index.php of the component Admin Login. The manipulation of the argument user leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-273231.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Adonesevangelista Online Blood Bank Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7320 is classified as a critical vulnerability due to its potential for SQL injection.
CVE-2024-7320 affects the Admin Login component located in /admin/index.php.
The SQL injection vulnerability could allow an attacker to manipulate database queries, potentially leading to unauthorized access or data exposure.
To fix CVE-2024-7320, it is recommended to sanitize and validate user input to prevent SQL injection attacks.
As of now, there may not be a specific patch available, so updating to a secure version or applying input validation measures is crucial.