CVE Published: 25/10/2024 |
CVE Updated: 25/10/2024 |
CVE Year: 2024 Source: VulDB |
Vendor: Codezips |
Product: Sales Management System Status : PUBLISHED
CVE-2024-10369 Description
A vulnerability was found in Codezips Sales Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /addcustcom.php. The manipulation of the argument refno leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.