CVE-2024-28557
PoC ×2—CVSS 3.1
9.8 critical
EPSS
1%p67
Published
()
Modified
Description
SQL Injection vulnerability in Sourcecodester php task management system v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to update-admin.php.
- Vendors
- mayurik
- Products
- php task management system
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.