CVE-2024-28322

April 26, 2024, 10:15 p.m.

Received
CVE has been recently published to the CVE List and has been received by the NVD.

Products

PuneethReddyHC Event Management

  • 1.0

Source

cve@mitre.org

Tags

CVE-2024-28322 details

Published : April 26, 2024, 10:15 p.m.
Last Modified : April 26, 2024, 10:15 p.m.

Description

SQL Injection vulnerability in /event-management-master/backend/register.php in PuneethReddyHC Event Management 1.0 allows attackers to run arbitrary SQL commands via the event_id parameter in a crafted POST request.

CVSS Score

1 2 3 4 5 6 7 8 9 10

Weakness

Weakness Name Description
This website uses the NVD API, but is not approved or certified by it.