CVE-2024-0355SQL Injection in Dairy Farm Shop Management System

CWE-89SQL Injection3 documents3 sources
Severity
9.8CRITICALNVD
CNA5.5
EPSS
0.1%
top 72.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 10

Description

A vulnerability, which was classified as critical, was found in PHPGurukul Dairy Farm Shop Management System up to 1.1. Affected is an unknown function of the file add-category.php. The manipulation of the argument category leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-250122 is the identifier assigned to this vulnerability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

🔴Vulnerability Details

2
GHSA
GHSA-ww4w-c262-2rmf: A vulnerability, which was classified as critical, was found in PHPGurukul Dairy Farm Shop Management System up to 12024-01-10
CVEList
PHPGurukul Dairy Farm Shop Management System add-category.php sql injection2024-01-09
CVE-2024-0355 — SQL Injection | cvebase