CVE-2024-3350

CVSS 3.1 Score 5.9 of 10 (medium)

Details

Published Apr 5, 2024
Updated: May 17, 2024
CWE ID 269

Summary

CVE-2024-3350 is a critical vulnerability affecting the Aplaya Beach Resort Online Reservation System 1.0 from SourceCodester. An unknown functionality in the file admin/mod_room/index.php is the culprit, which can be exploited through sql injection by manipulating the argument id. The attack can be launched remotely, and the exploit has been disclosed to the public, increasing the risk of potential exploitation. VDB-259454 is the identifier assigned to this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Mendix Applications

Affected Vendors

  • Siemens AG