CVE-2024-8223

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Aug 27, 2024
Updated: Aug 29, 2024
CWE ID 89

Summary

CVE-2024-8223 is a critical vulnerability found in SourceCodester Music Gallery Site version 1.0, affecting the /classes/Master.php?f=delete_category file due to an SQL injection flaw resulting from improper handling of the "id" argument. This vulnerability can be exploited remotely with no required user interaction and poses significant risks, including high impacts on confidentiality, integrity, and availability of affected systems. Organizations using this software should promptly apply remediation measures such as updating to a patched version or implementing input validation to mitigate the risk of exploitation. The vulnerability has been disclosed publicly, increasing the urgency for affected users to secure their systems against potential attacks. For further guidance on remediation, references can be found through third-party advisories linked to this CVE entry.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share