CVE-2024-44430

SQL Injection vulnerability in Best Free Law Office Management Software-v1.0 allows an attacker to execute arbitrary code and obtain sensitive information via a crafted payload to the kortex_lite/control/register_case.php interface
Configurations

Configuration 1 (hide)

cpe:2.3:a:mayurik:best_free_law_office_management:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-13 20:15

Updated : 2024-09-19 01:38


NVD link : CVE-2024-44430

Mitre link : CVE-2024-44430

CVE.ORG link : CVE-2024-44430


JSON object : View

Products Affected

mayurik

  • best_free_law_office_management
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

CWE-94

Improper Control of Generation of Code ('Code Injection')