SLIMS (Senayan Library Management Systems) 9 Bulian v9.6.1 is vulnerable to SQL Injection via pop-scope-vocabolary.php.
References
| Link | Resource |
|---|---|
| https://github.com/Vuln0wned/slims_owned/blob/main/slims/slims9-bulian-9.6.1-SQLI-pop_scope_vocabolary.md | Exploit Third Party Advisory |
| https://github.com/slims/slims9_bulian/issues/229 | Exploit Issue Tracking Vendor Advisory |
| https://github.com/Vuln0wned/slims_owned/blob/main/slims/slims9-bulian-9.6.1-SQLI-pop_scope_vocabolary.md | Exploit Third Party Advisory |
| https://github.com/slims/slims9_bulian/issues/229 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
05 May 2025, 17:24
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:slims:senayan_library_management_system:*:*:*:*:*:*:*:* | |
| First Time |
Slims
Slims senayan Library Management System |
|
| References | () https://github.com/Vuln0wned/slims_owned/blob/main/slims/slims9-bulian-9.6.1-SQLI-pop_scope_vocabolary.md - Exploit, Third Party Advisory | |
| References | () https://github.com/slims/slims9_bulian/issues/229 - Exploit, Issue Tracking, Vendor Advisory |
Information
Published : 2024-02-21 17:15
Updated : 2025-05-05 17:24
NVD link : CVE-2024-25288
Mitre link : CVE-2024-25288
CVE.ORG link : CVE-2024-25288
JSON object : View
Products Affected
slims
- senayan_library_management_system
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
