Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-33926 | A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. This affects an unknown part of the file /admin/add-customer.php. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. |
Tue, 26 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:1000projects:beauty_parlour_management_system:*:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Mon, 25 Nov 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
1000projects
1000projects beauty Parlour Management System |
|
| CPEs | cpe:2.3:a:1000projects:beauty_parlour_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
1000projects
1000projects beauty Parlour Management System |
Mon, 25 Nov 2024 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. This affects an unknown part of the file /admin/add-customer.php. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | 1000 Projects Beauty Parlour Management System add-customer.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-11-26T15:52:49.193Z
Reserved: 2024-11-24T15:01:35.647Z
Link: CVE-2024-11648
Updated: 2024-11-26T15:52:43.605Z
Status : Analyzed
Published: 2024-11-25T01:15:04.687
Modified: 2024-11-25T16:49:02.417
Link: CVE-2024-11648
No data.
OpenCVE Enrichment
No data.
EUVD