CVE-2024-8220: itsourcecode Tailoring Management System staffedit.php sql injection
A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file staffedit.php. The manipulation of the argument id/stafftype/address/fullname/phonenumber/salary leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8220?
CVE-2024-8220 has been declared as critical.
What functionality is affected by CVE-2024-8220?
CVE-2024-8220 affects an unknown functionality of the file staffedit.php.
What parameters are manipulated in CVE-2024-8220?
The manipulation of the arguments id, stafftype, address, fullname, phonenumber, and salary leads to the vulnerability in CVE-2024-8220.
How do I fix CVE-2024-8220?
To fix CVE-2024-8220, it is recommended to patch the Tailoring Management System to the latest version released by the vendor.
Which version of software is affected by CVE-2024-8220?
The affected version of the software is Angeljudesuarez Tailoring Management System version 1.0.