CVE-2024-2418

Source
https://cve.org/CVERecord?id=CVE-2024-2418
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-2418.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2024-2418
Published
2024-03-13T18:15:07.990Z
Modified
2026-03-14T12:31:19.097467Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability was found in SourceCodester Best POS Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /view_order.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-256705 was assigned to this vulnerability.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-2418.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "1.0"
            }
        ]
    }
]