Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-34987


A SQL Injection vulnerability exists in the `ofrs/admin/index.php` script of PHPGurukul Online Fire Reporting System 1.2. The vulnerability allows attackers to bypass authentication and gain unauthorized access by injecting SQL commands into the username input field during the login process.


Published

2024-06-03T20:15:09.273

Last Modified

2025-04-03T00:18:16.300

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.1 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phpgurukul online_fire_reporting_system 1.2 Yes

References