CVE-2024-0277

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Jan 7, 2024
Updated: May 17, 2024
CWE ID 89

Summary

CVE-2024-0277 is a critical vulnerability discovered in Kashipara Food Management System versions up to 1.0. This issue lies in the unknown code of the file party_submit.php, which can be exploited through a sql injection attack. The vulnerability can be triggered remotely by manipulating the party_name argument. The details of this exploit have been made public, increasing the risk of potential attacks. The vulnerability identifier is VDB-249832.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share