CVE-2024-2569: fallo de gravedad alta en SourceCodester Employee Task Management System
SourceCodester Employee Task Management System admin-manage-user.php redirect
Publicada el · Actualizada el
21Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 7.3epss 1.2%
probabilidad de explotación
1.2%top 33% de las CVE
explotación observada
noninguna fuente lo reporta
A vulnerability was found in SourceCodester Employee Task Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin-manage-user.php. The manipulation leads to execution after redirect. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-257072.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Productos afectados
SourceCodester · Employee Task Management SystemCVEs relacionadas — SourceCodester Employee Task Management System
En el mismo producto, de las más peligrosas a las menos.
CVE-2023-0905HIGHSourceCodester Employee Task Management System changePasswordForEmployee.php improper authenticationEPSS 3.2%CVE-2023-0904MEDIUMSourceCodester Employee Task Management System task-details.php sql injectionEPSS 1.7%CVE-2024-2573HIGHSourceCodester Employee Task Management System task-info.php redirectEPSS 1.0%CVE-2024-2572HIGHSourceCodester Employee Task Management System task-details.php redirectEPSS 1.0%CVE-2024-2571HIGHSourceCodester Employee Task Management System manage-admin.php redirectEPSS 1.0%CVE-2024-2570HIGHSourceCodester Employee Task Management System edit-task.php redirectEPSS 1.0%