A vulnerability was found in code-projects Job Portal 1.0. It has been classified as critical. Affected is an unknown function of the file logindbc.php. The manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
References
Link | Resource |
---|---|
https://vuldb.com/?id.274704 | VDB Entry |
https://vuldb.com/?ctiid.274704 | Permissions Required VDB Entry |
https://vuldb.com/?submit.390329 | Third Party Advisory VDB Entry |
https://github.com/XYgit-99/cve/issues/1 | Exploit Issue Tracking |
Configurations
History
19 Aug 2024, 18:07
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:fabianros:job_portal:1.0:*:*:*:*:*:*:* | |
First Time |
Fabianros job Portal
Fabianros |
|
CWE | CWE-89 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
References | () https://vuldb.com/?id.274704 - VDB Entry | |
References | () https://github.com/XYgit-99/cve/issues/1 - Exploit, Issue Tracking | |
References | () https://vuldb.com/?submit.390329 - Third Party Advisory, VDB Entry | |
References | () https://vuldb.com/?ctiid.274704 - Permissions Required, VDB Entry |
15 Aug 2024, 01:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-15 01:15
Updated : 2024-08-19 18:07
NVD link : CVE-2024-7808
Mitre link : CVE-2024-7808
JSON object : View
Products Affected
fabianros
- job_portal
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')