SQL Injection Vulnerability in SourceCodester Petrol Pump Management Software
CVE-2024-10380
What is CVE-2024-10380?
A critical vulnerability has been identified in SourceCodester's Petrol Pump Management Software version 1.0, impacting the functionality of the /admin/ajax_product.php file. This vulnerability is characterized by an SQL injection attack that may be initiated remotely, allowing an attacker to manipulate the 'drop_services' parameter. The exposure of this flaw to the public increases the urgency for users to secure their systems, as it could be exploited to gain unauthorized access to sensitive database information.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Petrol Pump Management Software 1.0
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
