CVE-2024-29302
Mayurik
CVE-2024-29302: SQL Injection vulnerability in SourceCodester PHP Task Management System 1.0. Attackers can exploit update-employee.php to execute arbitrary SQL queries. This SQL Injection flaw allows unauthorized database access.
Although CVE-2024-29302 has a CVSS score of 7.5, the SOCRadar Vulnerability Risk Score (SVRS) is 30, indicating a lower immediate risk compared to critical vulnerabilities. However, given the CWE-89 classification and the 'In The Wild' tag, organizations using SourceCodester PHP Task Management System 1.0 should still investigate and patch this vulnerability promptly. This is essential to prevent potential data breaches and maintain the integrity of the task management system. The vulnerability allows attackers to read, modify, or delete sensitive data, potentially compromising the entire system and affecting data security and operations.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.