CVE-2024-9817: code-projects Blood Bank System update.php sql injection
Published Oct 10, 2024
·Updated
A vulnerability was found in code-projects Blood Bank System 1.0. It has been classified as critical. This affects an unknown part of the file /update.php. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
1 affected component
Blood Bank System Project Blood Bank System=1.0
Event History
Oct 10, 2024
CVE Published
via MITRE·10:31 PM
Data Sourced
via MITRE·10:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-9817?
CVE-2024-9817 has been classified as critical due to its potential for remote SQL injection.
2
How do I fix CVE-2024-9817?
To fix CVE-2024-9817, you should sanitize and validate all input parameters in the /update.php file.
3
What software is affected by CVE-2024-9817?
CVE-2024-9817 affects Blood Bank System version 1.0.
4
Can CVE-2024-9817 be exploited remotely?
Yes, CVE-2024-9817 can be exploited remotely through improper handling of input parameters.
5
What type of vulnerability is CVE-2024-9817?
CVE-2024-9817 is classified as an SQL injection vulnerability.