CVE-2024-7499

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Aug 6, 2024
Updated: Aug 19, 2024
CWE ID 89

Summary

CVE-2024-7499 is a critical vulnerability affecting the Airline Reservation System 1.0. This issue lies within an unidentified functionality of the flights.php file. Manipulation of the departure_airport_id argument can lead to SQL injection, making the attack remotely executable. The exploit for this vulnerability has been made public, increasing the risk of potential attacks. The Vulnerability Database has assigned the identifier VDB-273625 to this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share