CVE-2024-3258
CVSS 3.1 Score 7.1 of 10 (high)
Details
Published Apr 3, 2024
Updated: May 17, 2024
CWE ID 79
Summary
CVE-2024-3258: A critical vulnerability has been identified in the SourceCodester Internship Portal Management System 1.0. The issue lies in the admin/add_activity.php file, where manipulation of the title, description, start, and end arguments can lead to SQL injection. This vulnerability can be exploited remotely, making it a significant risk. The exploit for this vulnerability, identified as VDB-259107, has been disclosed to the public, increasing the potential for widespread attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share