CVE-2024-6215

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Jun 21, 2024
CWE ID 89

Summary

CVE-2024-6215 is a critical vulnerability affecting the SourceCodester Food Ordering Management System up to version 1.0. This issue is related to the processing of the file view-ticket-admin.php, where manipulation of the argument id can lead to SQL injection. The exploit for this vulnerability has been disclosed to the public, allowing remote attacks. No further details on the extent of the impacted user base have been provided, but it is important to note that SQL injection vulnerabilities can lead to significant data breaches and system compromise. System administrators using the affected software are urged to apply patches or updates as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share