CVE-2024-37872

SQL injection vulnerability in process.php in Itsourcecode Billing System in PHP 1.0 allows remote attackers to execute arbitrary SQL commands via the username parameter.
CVSS

No CVSS.

References
Link Resource
https://github.com/TThuyyy/cve1/issues/4 Exploit Issue Tracking Third Party Advisory
https://github.com/TThuyyy/cve1/issues/4 Exploit Issue Tracking Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:angeljudesuarez:billing_system:1.0:*:*:*:*:*:*:*

History

14 May 2025, 15:31

Type Values Removed Values Added
References () https://github.com/TThuyyy/cve1/issues/4 - () https://github.com/TThuyyy/cve1/issues/4 - Exploit, Issue Tracking, Third Party Advisory
CPE cpe:2.3:a:angeljudesuarez:billing_system:1.0:*:*:*:*:*:*:*
First Time Angeljudesuarez
Angeljudesuarez billing System

09 Jul 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-09 20:15

Updated : 2025-05-14 15:31


NVD link : CVE-2024-37872

Mitre link : CVE-2024-37872


JSON object : View

Products Affected

angeljudesuarez

  • billing_system
CWE

No CWE.