CVE-2024-8465
published 2024-09-05CVE-2024-8465: SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and…
high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and retrieve all the information stored in it.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| phpgurukul | job_portal | — | — |