CVE-2024-37857

SQL Injection vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privileges via id parameter to php-lfis/admin/categories/view_category.php.
CVSS

No CVSS.

Configurations

No configuration.

History

30 Jul 2024, 13:33

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de inyección SQL en Lost and Found Information System 1.0 permite a un atacante remoto escalar privilegios mediante el parámetro id a php-lfis/admin/categories/view_category.php.

29 Jul 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-29 19:15

Updated : 2024-07-30 13:33


NVD link : CVE-2024-37857

Mitre link : CVE-2024-37857

CVE.ORG link : CVE-2024-37857


JSON object : View

Products Affected

No product.

CWE

No CWE.