CVE-2024-11097

A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the component Main Menu. The manipulation leads to infinite loop. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.
References
Link Resource
https://github.com/Hacker0xone/CVE/issues/5 Exploit Third Party Advisory
https://vuldb.com/?ctiid.283918 Permissions Required
https://vuldb.com/?id.283918 Permissions Required
https://vuldb.com/?submit.441237 Third Party Advisory
https://www.sourcecodester.com/ Product
Configurations

Configuration 1 (hide)

cpe:2.3:a:razormist:student_record_management_system:1.0:*:*:*:*:*:*:*

History

14 Nov 2024, 15:14

Type Values Removed Values Added
First Time Razormist
Razormist student Record Management System
CPE cpe:2.3:a:razormist:student_record_management_system:1.0:*:*:*:*:*:*:*
CVSS v2 : 1.7
v3 : 3.3
v2 : 1.7
v3 : 5.5
References () https://github.com/Hacker0xone/CVE/issues/5 - () https://github.com/Hacker0xone/CVE/issues/5 - Exploit, Third Party Advisory
References () https://vuldb.com/?ctiid.283918 - () https://vuldb.com/?ctiid.283918 - Permissions Required
References () https://vuldb.com/?id.283918 - () https://vuldb.com/?id.283918 - Permissions Required
References () https://vuldb.com/?submit.441237 - () https://vuldb.com/?submit.441237 - Third Party Advisory
References () https://www.sourcecodester.com/ - () https://www.sourcecodester.com/ - Product

12 Nov 2024, 13:55

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad en SourceCodester Student Record Management System 1.0 y se ha clasificado como problemática. Esta vulnerabilidad afecta al código desconocido del componente Menú principal. La manipulación provoca un bucle infinito. Es necesario realizar un ataque local. La vulnerabilidad se ha hecho pública y puede utilizarse.

12 Nov 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-12 02:15

Updated : 2024-11-14 15:14


NVD link : CVE-2024-11097

Mitre link : CVE-2024-11097

CVE.ORG link : CVE-2024-11097


JSON object : View

Products Affected

razormist

  • student_record_management_system
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')

CWE-404

Improper Resource Shutdown or Release