CVE-2024-10354
MEDIUMSourceCodester Petrol Pump Management Software 1.0 - SQL Injection via /admin/print.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-10354. PoCs published by K1nakoo.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2024-10354, an SQL injection vulnerability in SourceCodester Petrol Pump Management Software v1.0. It includes vulnerability analysis, proof-of-concept payloads, and sqlmap usage to exploit the vulnerability.
Description
A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/print.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Exploits (1)
This repository provides a detailed technical analysis of CVE-2024-10354, an SQL injection vulnerability in SourceCodester Petrol Pump Management Software v1.0. It includes vulnerability analysis, proof-of-concept payloads, and sqlmap usage to exploit the vulnerability.
References (5)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L