First published: Sat Sep 28 2024(Updated: )
A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /control/forgot_pass.php. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
mayurik Advocate Office Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9296 is classified as a critical vulnerability.
To fix CVE-2024-9296, it is recommended to validate and sanitize user inputs to prevent SQL injection.
CVE-2024-9296 affects the file /control/forgot_pass.php.
CVE-2024-9296 is a SQL injection vulnerability.
The vulnerability in CVE-2024-9296 is caused by improper handling of the 'username' parameter.