CVE-2024-12942 Information
Dec 27, 2024
cve
Description
A vulnerability was found in 1000 Projects Portfolio Management System MCA 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/admin_login.php. The manipulation of the argument username/password leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Reference
https://1000projects.org/ https://github.com/dawatermelon/CVE/blob/main/Portfolio%20Management%20System%20MCA%20Project/README.md https://vuldb.com/?ctiid.289302 https://vuldb.com/?id.289302 https://vuldb.com/?submit.468329
Share on: