CVE-2024-8147: code-projects Pharmacy Management System index.php sql injection
A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /index.php?action=editPharmacist. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8147?
CVE-2024-8147 is classified as a critical vulnerability.
How does CVE-2024-8147 affect Pharmacy Management System 1.0?
CVE-2024-8147 allows for SQL injection through the manipulation of the id argument in the /index.php?action=editPharmacist file.
What kind of attack can be executed using CVE-2024-8147?
An attacker can initiate a remote SQL injection attack using CVE-2024-8147.
Is there a specific version of Pharmacy Management System affected by CVE-2024-8147?
Yes, CVE-2024-8147 specifically affects Pharmacy Management System version 1.0.
How can I mitigate the risk of CVE-2024-8147?
To mitigate CVE-2024-8147, it is recommended to apply updates or patches provided by the software vendor.