ZeroHour

CVE-2024-36673

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p43
Published
()
Modified
Description

Sourcecodester Pharmacy/Medical Store Point of Sale System 1.0 is vulnerable SQL Injection via login.php. This vulnerability stems from inadequate validation of user inputs for the email and password parameters, allowing attackers to inject malicious SQL queries.

Vendors
pharmacy\/medical store point of sale system project
Products
pharmacy\/medical store point of sale system
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.