Arbitrary SQL Command Execution Vulnerability in User Registration & Login and User Management System 3.2
CVE-2024-48280

Currently unrated

What is CVE-2024-48280?

A SQL Injection vulnerability was found in /search-result.php of PHPGurukul User Registration & Login and User Management System 3.2, which allows remote attackers to execute arbitrary SQL command via the fromdate parameter in a POST HTTP request.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.