CVE-2024-6191
CVSS 3.1 Score 7.3 of 10 (high)
Details
Published Jun 20, 2024
CWE ID 89
Summary
CVE-2024-6191 is a newly disclosed critical vulnerability in the Student Management System 1.0's login.php component. The issue lies within an unspecified part of this file, and it allows an attacker to execute SQL injection by manipulating the user argument. Remotely initiated attacks are possible, making this a significant threat. The vulnerability identification number for this issue is VDB-269163, and it has already been made public, increasing the risk of exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.