Skip to main content

CVE-2024-7286

7.3
HIGHCVSS v3.1 Base Score
0.10%
LOW RiskEPSS (27th percentile)

A vulnerability was found in SourceCodester Establishment Billing Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/ajax.php?action=login of the component Login. The manipulation of the argument username leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-273155.

Published: 7/31/2024
Modified: 8/12/2024
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

7.3HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

EPSS Score (Exploitation Probability)

0.10%LOW Exploitation Risk
27th percentile

This vulnerability has a 0.10% probability of being exploited in the next 30 days, ranking higher than 27% of all scored CVEs.

Related Vulnerabilities