will

2 exploits Active since Oct 2024
CVE-2024-10349 WRITEUP MEDIUM WRITEUP
Best House Rental Management System 1.0 - SQL Injection via delete_tenant id Parameter
A vulnerability was found in SourceCodester Best House Rental Management System 1.0 and classified as critical. Affected by this issue is the function delete_tenant of the file /ajax.php?action=delete_tenant. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
CVSS 6.3
CVE-2024-10450 WRITEUP MEDIUM WRITEUP
SourceCodester Kortex Lite Advocate Office Management System 1.0 - SQL Injection via POST Parameter Handler
A vulnerability has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /kortex_lite/control/edit_profile.php of the component POST Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS 6.3