CVE-2024-5588
CVSS 3.1 Score 6.3 of 10 (medium)
Details
Published Jun 2, 2024
Updated: Jun 4, 2024
CWE ID 89
Summary
CVE-2024-5588 is a critical vulnerability affecting the Learning Management System 1.0. This issue lies in an unidentified functionality of the file processscore.php. An attacker can exploit this vulnerability through sql injection by manipulating the argument LessonID. The attack can be launched remotely, making it a significant threat. The exploit for this vulnerability (VDB-266839) has been disclosed publicly, increasing the risk of potential exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share