High severity8.8NVD Advisory· Published Jul 29, 2024· Updated Jul 9, 2026
CVE-2024-37857
CVE-2024-37857
Description
SQL Injection vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privileges via id parameter to php-lfis/admin/categories/view_category.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:oretnom23:lost_and_found_information_system:1.0:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: = 1.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.