Attackers Can Access Sensitive Data via SQL Injection Vulnerability in JobPortal
CVE-2024-8464
7.5HIGH
What is CVE-2024-8464?
This SQL injection vulnerability targets Job Portal applications, enabling attackers to manipulate the JOBREGID parameter in the URL, specifically within the /jobportal/admin/applicants/controller.php file. By exploiting this flaw, malicious actors can execute specially crafted SQL queries, leading to unauthorized access to sensitive information stored in the database. This vulnerability poses significant risks for data confidentiality and integrity, making it essential for organizations using affected versions to implement protective measures promptly.
Affected Version(s)
Job Portal 1.0