First published: Thu Sep 12 2024(Updated: )
A vulnerability classified as critical has been found in SourceCodester Best House Rental Management System 1.0. Affected is the function delete_user/save_user of the file /admin_class.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Best House Rental Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-8709 is classified as a critical vulnerability.
To fix CVE-2024-8709, update the Best House Rental Management System to a patched version.
CVE-2024-8709 is an SQL injection vulnerability affecting the delete_user/save_user function in the /admin_class.php file.
The affected version of the software for CVE-2024-8709 is 1.0 of the Best House Rental Management System.
Exploiting CVE-2024-8709 could allow an attacker to execute arbitrary SQL commands on the database.