CVE-2024-30998
CRITICALMen Salon Management System 2.0 - SQL Injection via Email Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-30998. PoCs published by efekaanakkar.
AI-analyzed exploit summary The repository provides a detailed technical analysis of CVE-2024-30998, an SQL injection vulnerability in PHPGurukul Men Salon Management System 2.0. It includes a proof of concept using sqlmap and explains the vulnerability's root cause, affected parameter, and impact.
Description
SQL Injection vulnerability in PHPGurukul Men Salon Management System v.2.0, allows remote attackers to execute arbitrary code and obtain sensitive information via the email parameter in the index.php component.
Exploits (1)
The repository provides a detailed technical analysis of CVE-2024-30998, an SQL injection vulnerability in PHPGurukul Men Salon Management System 2.0. It includes a proof of concept using sqlmap and explains the vulnerability's root cause, affected parameter, and impact.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H