CVE-2024-2573: high-severity vulnerability in SourceCodester Employee Task Management System
SourceCodester Employee Task Management System task-info.php redirect
Published · Updated
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.3epss 1.0%
exploitation probability
1.0%top 37% of all CVEs
observed exploitation
nono source reports it
A vulnerability classified as critical has been found in SourceCodester Employee Task Management System 1.0. Affected is an unknown function of the file /task-info.php. The manipulation leads to execution after redirect. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257076.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Affected products
SourceCodester · Employee Task Management SystemRelated CVEs — SourceCodester Employee Task Management System
In the same product, most dangerous first.
CVE-2023-0905HIGHSourceCodester Employee Task Management System changePasswordForEmployee.php improper authenticationEPSS 3.2%CVE-2023-0904MEDIUMSourceCodester Employee Task Management System task-details.php sql injectionEPSS 1.7%CVE-2024-2569HIGHSourceCodester Employee Task Management System admin-manage-user.php redirectEPSS 1.2%CVE-2024-2572HIGHSourceCodester Employee Task Management System task-details.php redirectEPSS 1.0%CVE-2024-2571HIGHSourceCodester Employee Task Management System manage-admin.php redirectEPSS 1.0%CVE-2024-2570HIGHSourceCodester Employee Task Management System edit-task.php redirectEPSS 1.0%