CVE-2024-2677

CVSS 3.1 Score 6.3 of 10 (medium)

Details

Published Mar 20, 2024
Updated: Mar 21, 2024
CWE ID 89

Summary

CVE-2024-2677 is a critical vulnerability found in Campcodes Online Job Finder System 1.0. The vulnerability affects the file /admin/category/controller.php, specifically through the manipulation of the argument CATEGORYID, which can lead to SQL injection. This vulnerability allows for remote attacks and has been publicly disclosed, increasing the risk of exploitation. The identifier VDB-257377 has been assigned to this vulnerability. Remediation measures need to be implemented promptly to mitigate the potential danger it poses to organizations using this system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share