CVE-2024-11212

CVSS V2 None CVSS V3 None
Description
A vulnerability, which was classified as critical, has been found in SourceCodester Best Employee Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/fetch_product_details.php. The manipulation of the argument barcode leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Overview
  • CVE ID
  • CVE-2024-11212
  • Assigner
  • VulDB
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-11-14T15:00:12.619Z
  • Last Modified Date
  • 2024-11-14T16:10:29.491Z
References
Reference URL Reference Tags
https://vuldb.com/?id.284528 vdb-entry technical-description
https://vuldb.com/?ctiid.284528 signature permissions-required
https://vuldb.com/?submit.442035 third-party-advisory
https://github.com/physicszq/web_issue/blob/main/Management/sql_injection01.md exploit
https://www.sourcecodester.com/ product
History
Created Old Value New Value Data Type Notes
2024-11-15 13:28:12 Added to TrackCVE