First published: Sat Sep 28 2024(Updated: )
A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an unknown function of the file /admin/blood/update/B+.php. The manipulation of the argument Bloodname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
code-projects Blood Bank System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9316 is classified as a critical vulnerability.
CVE-2024-9316 is an SQL injection vulnerability.
CVE-2024-9316 affects version 1.0 of the Blood Bank Management System.
To fix CVE-2024-9316, validate and sanitize all input parameters used in the SQL queries.
CVE-2024-9316 occurs in the /admin/blood/update/B+.php file.