CVE-2024-29301
Mayurik
CVE-2024-29301: SQL Injection vulnerability in SourceCodester PHP Task Management System 1.0. This security flaw allows attackers to inject malicious SQL code, potentially leading to unauthorized access and data manipulation. The vulnerability exists in the update-admin.php file through the admin_id parameter.
Although the CVSS score is 7.5, the SOCRadar Vulnerability Risk Score (SVRS) is 30, suggesting a lower level of immediate threat activity currently observed in the wild. However, because it is tagged as "In The Wild" it is critical to monitor for increased exploitation. Successful exploitation of this SQL Injection vulnerability could result in attackers gaining control over the database. Immediate patching is recommended to mitigate potential risks, which may include data breaches and system compromise. This CVE is significant due to the potential for data breaches and unauthorized access to sensitive information within the task management system.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.