CVE-2024-10844
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Nov 5, 2024
Updated: Nov 6, 2024
CWE ID 707
CWE ID 74
CWE ID 89
Summary
CVE-2024-10844 is a critical vulnerability affecting the 1000 Projects Bookstore Management System 1.0. The issue lies within the file search.php, and an attacker can manipulate the argument 's' to carry out sql injection attacks. This vulnerability can be exploited remotely, making it a significant security risk. The exploit for this vulnerability has been made public, increasing the likelihood of its use in cyberattacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share