Vulnerability Details CVE-2024-36673
Sourcecodester Pharmacy/Medical Store Point of Sale System 1.0 is vulnerable SQL Injection via login.php. This vulnerability stems from inadequate validation of user inputs for the email and password parameters, allowing attackers to inject malicious SQL queries.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.1%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-36673
-
cpe:2.3:a:pharmacy/medical_store_point_of_sale_system_project:pharmacy/medical_store_point_of_sale_system:1.0