First published: Sat Oct 12 2024(Updated: )
A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file reset.php. The manipulation of the argument useremail leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Blood Bank Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9894 is classified as a critical vulnerability.
CVE-2024-9894 exploits SQL injection through the manipulation of the useremail argument in the reset.php file.
The affected version of Blood Bank System is 1.0.
Yes, CVE-2024-9894 can be exploited remotely.
The vulnerability CVE-2024-9894 is found in the reset.php file.