CVE-2024-8945: CodeCanyon RISE Ultimate Project Manager save sql injection
A vulnerability has been found in CodeCanyon RISE Ultimate Project Manager 3.7.0 and classified as critical. This vulnerability affects unknown code of the file /index.php/dashboard/save. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8945?
CVE-2024-8945 is classified as a critical vulnerability.
How does CVE-2024-8945 affect the RISE Ultimate Project Manager?
CVE-2024-8945 affects the /index.php/dashboard/save file, leading to SQL injection through the manipulation of the id argument.
Can CVE-2024-8945 be exploited remotely?
Yes, the CVE-2024-8945 vulnerability can be initiated remotely.
What versions of RISE Ultimate Project Manager are affected by CVE-2024-8945?
CVE-2024-8945 affects version 3.7.0 of RISE Ultimate Project Manager.
How can I mitigate the risks associated with CVE-2024-8945?
To mitigate risks from CVE-2024-8945, it is recommended to apply security updates and patches as soon as they are available.