Unrated severityNVD Advisory· Published Oct 15, 2024· Updated Oct 15, 2024
CVE-2024-48282
CVE-2024-48282
Description
A SQL Injection vulnerability was found in /password-recovery.php of PHPGurukul User Registration & Login and User Management System 3.2, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the femail parameter in a POST HTTP request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: =3.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.