CVE-2024-5981

A vulnerability was found in itsourcecode Online House Rental System 1.0. It has been classified as critical. Affected is an unknown function of the file manage_user.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-268458 is the identifier assigned to this vulnerability.
References
Link Resource
https://github.com/LiuYongXiang-git/cve/issues/1 Exploit Third Party Advisory
https://vuldb.com/?ctiid.268458 Permissions Required VDB Entry
https://vuldb.com/?id.268458 VDB Entry
https://vuldb.com/?submit.356163 Third Party Advisory VDB Entry
https://github.com/LiuYongXiang-git/cve/issues/1 Exploit Third Party Advisory
https://vuldb.com/?ctiid.268458 Permissions Required VDB Entry
https://vuldb.com/?id.268458 VDB Entry
https://vuldb.com/?submit.356163 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

cpe:2.3:a:angeljudesuarez:online_house_rental_system:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-06-14 02:15

Updated : 2024-11-21 09:48


NVD link : CVE-2024-5981

Mitre link : CVE-2024-5981

CVE.ORG link : CVE-2024-5981


JSON object : View

Products Affected

angeljudesuarez

  • online_house_rental_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')