CVE-2024-8340
Oretnom23
CVE-2024-8340 is a critical SQL Injection vulnerability in SourceCodester Electric Billing Management System 1.0, allowing remote attackers to compromise the system. The vulnerability lies within the /Actions.php?a=login file, where manipulating the 'username' argument can lead to unauthorized database access. With a SOCRadar Vulnerability Risk Score (SVRS) of 84, this requires immediate attention and patching, exceeding the critical threshold of 80. This vulnerability is classified as 'In The Wild', meaning active exploitation is likely. The high CVSS score of 9.8 further emphasizes the severe impact, potentially enabling attackers to steal sensitive data, modify records, or even gain complete control of the affected system. Organizations using this system must prioritize patching to mitigate the critical risk posed by CVE-2024-8340.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.