Vulnerability CVE-2024-28557


Published: 2024-04-15   Modified: 2024-04-16

Description:
SQL Injection vulnerability in Sourcecodester php task management system v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to update-admin.php.

 References:
https://github.com/xuanluansec/vul/blob/main/vul/2/README-SQL-2.md
https://github.com/xuanluansec/vul/issues/2

Copyright 2026, cxsecurity.com

 

Back to Top