CVE-2024-9090: SourceCodester Modern Loan Management System search_member.php sql injection
A vulnerability was found in SourceCodester Modern Loan Management System 1.0. It has been classified as critical. Affected is an unknown function of the file searchmember.php. The manipulation of the argument searchMember leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9090?
CVE-2024-9090 has been classified as a critical vulnerability.
How does CVE-2024-9090 affect the Modern Loan Management System?
CVE-2024-9090 allows for SQL injection through the manipulation of the searchMember argument in the search_member.php file.
What versions of Modern Loan Management System are affected by CVE-2024-9090?
The affected version of the Modern Loan Management System is 1.0.
How can I fix CVE-2024-9090?
To fix CVE-2024-9090, input validation and sanitization should be implemented to prevent SQL injection vulnerabilities.
What are the potential impacts of exploiting CVE-2024-9090?
Exploiting CVE-2024-9090 can result in unauthorized access to the database, allowing attackers to manipulate or extract sensitive information.