CVE-2024-10808

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 5, 2024
Updated: Nov 6, 2024
CWE ID 707
CWE ID 89
CWE ID 74

Summary

CVE-2024-10808 is a newly disclosed critical vulnerability affecting the Admin/req_detail.php file in code-projects E-Health Care System 1.0. The issue involves an sql injection vulnerability, where manipulation of the id argument can be exploited remotely. This exploit, which has been made public, can lead to potentially harmful database queries and unauthorized data access. The specific code causing this vulnerability remains unknown, but affected users are advised to apply patches or updates as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share