SQL injection vulnerability in login.php in Itsourcecode Online Discussion Forum Project in PHP with Source Code 1.0 allows remote attackers to execute arbitrary SQL commands via the email parameter.
References
Link | Resource |
---|---|
https://github.com/TThuyyy/cve1/issues/1 | Exploit Issue Tracking Third Party Advisory |
https://github.com/TThuyyy/cve1/issues/1 | Exploit Issue Tracking Third Party Advisory |
Configurations
History
14 May 2025, 15:32
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/TThuyyy/cve1/issues/1 - Exploit, Issue Tracking, Third Party Advisory | |
CPE | cpe:2.3:a:emiloi:online_discussion_forum:1.0:*:*:*:*:*:*:* | |
First Time |
Emiloi online Discussion Forum
Emiloi |
21 Nov 2024, 09:24
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/TThuyyy/cve1/issues/1 - |
11 Jul 2024, 15:05
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.2 |
CWE | CWE-89 |
09 Jul 2024, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-09 20:15
Updated : 2025-05-14 15:32
NVD link : CVE-2024-37871
Mitre link : CVE-2024-37871
CVE.ORG link : CVE-2024-37871
JSON object : View
Products Affected
emiloi
- online_discussion_forum
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')