9.8
CVSSv3

CVE-2024-6808

CVSSv4: 6.9 | CVSSv3: 9.8 | CVSSv2: 7.5 | VMScore: 790 | EPSS: 0.00044 | KEV: Not Included
Published: 17/07/2024 Updated: 21/11/2024

Vulnerability Summary

Critical Remote SQL Injection in itsourcecode Simple Task List

A critical vulnerability was found in itsourcecode Simple Task List 1.0. This issue affects the insertUserRecord function in the signUp.php file. Manipulating the username argument can lead to SQL injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be used. The identifier for this vulnerability is VDB-271707.

Vulnerable Product Search on Vulmon Subscribe to Product

code-projects simple task list 1.0