Security Advisory

CVE-2024-9296

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-09-28 09:00:07
Last updated 2024-09-30 15:48:01
Assigner VulDB
CVSS score 6.9
State PUBLISHED

Description

A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /control/forgot_pass.php. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.