CVE-2024-35468
MEDIUMSourceCodester Human Resource Management System 1.0 - SQL Injection via Password Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-35468. PoCs published by dovankha.
AI-analyzed exploit summary This repository provides a detailed writeup of CVE-2024-35468, an SQL injection vulnerability in SourceCodester Human Resource Management System 1.0. It includes technical details, affected components, and proof-of-concept evidence via screenshots and a video.
Description
A SQL injection vulnerability in /hrm/index.php in SourceCodester Human Resource Management System 1.0 allows attackers to execute arbitrary SQL commands via the password parameter.
Exploits (1)
This repository provides a detailed writeup of CVE-2024-35468, an SQL injection vulnerability in SourceCodester Human Resource Management System 1.0. It includes technical details, affected components, and proof-of-concept evidence via screenshots and a video.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N