CVE-2024-0735
Mayurik
CVE-2024-0735 is a critical SQL injection vulnerability found in SourceCodester Online Tours & Travels Management System 1.0. The vulnerability resides in the exec
function of the admin/operations/expense.php
file. This remote vulnerability allows attackers to inject malicious SQL code, potentially leading to unauthorized database access and manipulation.
With a SOCRadar Vulnerability Risk Score (SVRS) of 84, CVE-2024-0735 is considered a critical threat requiring immediate attention and patching. The public availability of the exploit further increases the risk of active exploitation. Successful exploitation could result in data breaches, service disruption, or complete system compromise. Addressing this vulnerability is crucial to protect sensitive data and maintain system integrity.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.