High severity7.8NVD Advisory· Published Aug 15, 2024· Updated Jun 17, 2026
CVE-2024-42679
CVE-2024-42679
Description
SQL Injection vulnerability in Super easy enterprise management system v.1.0.0 and before allows a local attacker to execute arbitrary code via a crafted script to the/ajax/Login.ashx component.
Affected products
2- cpe:2.3:a:cysoft168:super_easy_enterprise_management_system:*:*:*:*:*:*:*:*Range: <=1.0.0
- Super easy enterprise management system/Super easy enterprise management systemdescription
Patches
Vulnerability mechanics
References
1- github.com/WarmBrew/web_vul/blob/main/CYGLXT/CYsqli.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.