CVE-2024-5588

CVSS 3.1 Score 6.3 of 10 (medium)

Details

Published Jun 2, 2024
Updated: Jun 4, 2024
CWE ID 89

Summary

CVE-2024-5588 is a critical vulnerability affecting the Learning Management System 1.0. This issue lies in an unidentified functionality of the file processscore.php. An attacker can exploit this vulnerability through sql injection by manipulating the argument LessonID. The attack can be launched remotely, making it a significant threat. The exploit for this vulnerability (VDB-266839) has been disclosed publicly, increasing the risk of potential exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share