CVE-2024-9894

NVD Published Date: October 12, 2024 at 01:15 PM
NVD Last Modified: October 16, 2024 at 10:13 PM
Download Patch
Vulnerability ID
CVE-2024-9894
Severity
HIGH
Severity Score
8.8
Summary
A vulnerability, which was classified as critical, was found in code-projects Blood Bank System 1.0. Affected is an unknown function of the file reset.php. The manipulation of the argument useremail leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Mitigation and Patches
-
Metasploit Payload
-
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE ID
CWE-89

Recent Publish

KB5046056

KB5046057

CVE-2024-9616

CVE-2023-42133

KB5046058

KB5046059

See More ...

See SecOps Solution
in action

Schedule Demo