Vulnerability Description
A vulnerability was found in code-projects Crime Reporting System 1.0. It has been rated as critical. This issue affects some unknown processing of the file police_add.php. The manipulation of the argument police_name/police_id/police_spec/password leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-254609 was assigned to this vulnerability.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Code-Projects | Crime Reporting System | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/jxp98/VulResearch/blob/main/2024/02/2Crime%20Reporting%20SystBroken Link
- https://vuldb.com/?ctiid.254609Permissions Required
- https://vuldb.com/?id.254609Third Party Advisory
- https://github.com/jxp98/VulResearch/blob/main/2024/02/2Crime%20Reporting%20SystBroken Link
- https://vuldb.com/?ctiid.254609Permissions Required
- https://vuldb.com/?id.254609Third Party Advisory
FAQ
What is CVE-2024-1821?
CVE-2024-1821 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A vulnerability was found in code-projects Crime Reporting System 1.0. It has been rated as critical. This issue affects some unknown processing of the file police_add.php. The manipulation of the arg...
How severe is CVE-2024-1821?
CVE-2024-1821 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-1821?
Check the references section above for vendor advisories and patch information. Affected products include: Code-Projects Crime Reporting System.