CVE-2024-6015

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jun 15, 2024
Updated: Jul 19, 2024
CWE ID 89

Summary

CVE-2024-6015 is a critical vulnerability identified in the Online House Rental System 1.0. The issue lies within an unnamed functionality of the file manage_user.php, which is susceptible to SQL injection. This vulnerability can be exploited remotely by manipulating the argument "month_of." The exploit for this vulnerability has been disclosed to the public, posing a significant risk to affected systems. The associated identifier for this vulnerability is VDB-268723.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share