CVE-2024-7794: itsourcecode Vehicle Management System mybill.php sql injection
Published Aug 14, 2024
·Updated
A vulnerability was found in itsourcecode Vehicle Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file mybill.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
Admerc Vehicle Management System=1.0
Event History
Aug 14, 2024
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-7794?
CVE-2024-7794 has been rated as critical.
2
What kind of vulnerability is CVE-2024-7794?
CVE-2024-7794 is an SQL injection vulnerability.
3
What component of the Vehicle Management System is affected by CVE-2024-7794?
CVE-2024-7794 affects the mybill.php file in Vehicle Management System 1.0.
4
Can CVE-2024-7794 be exploited remotely?
Yes, the exploitation of CVE-2024-7794 can be launched remotely.
5
How do I fix CVE-2024-7794?
To fix CVE-2024-7794, implement input validation and sanitize user inputs in the mybill.php file.