code-projects Job Recruitment Seeker Profile _call_main_search_ajax.php sql injection
Vulnerability Description
A vulnerability, which was classified as critical, has been found in code-projects Job Recruitment 1.0. This issue affects some unknown processing of the file /_parse/_call_main_search_ajax.php of the component Seeker Profile Handler. The manipulation of the argument s1 leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-13093
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- 李腾
- 谢亚轩
- 刘芮彤
- UnrealDawn (VulDB User)
- UnrealDawn (VulDB User)
References
More from code-projects
View All →Affected Vendor
code-projects
View all reports →