CVE-2024-6113
Janobe
CVE-2024-6113 is a critical SQL Injection vulnerability found in itsourcecode Monbela Tourist Inn Online Reservation System 1.0, affecting the login.php file. Remotely exploiting this flaw allows attackers to manipulate the 'email' argument to inject malicious SQL code. Although the CVSS score is high, the SOCRadar Vulnerability Risk Score (SVRS) is 30, suggesting a lower immediate real-world risk compared to vulnerabilities with scores above 80. However, the presence of the CWE-89 classification indicates a significant risk of data breaches and system compromise. Successfully exploiting this vulnerability could grant unauthorized access to sensitive customer data, including personal information and reservation details. While the SVRS suggests a lower threat level than the CVSS score alone, organizations should prioritize patching this security flaw to prevent potential attacks, data loss, and reputational damage. It's crucial to monitor for exploitation attempts even with a lower SVRS score.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.