
Proof-of-concept for CVE-2024-48427: SQL injection in Sourcecodester Packers and Movers Management System v1.0. Exploits the id parameter to execute arbitrary SQL commands and dump database contents.
A SQL injection vulnerability in Sourcecodester Packers and Movers Management System v1.0 allows remote authenticated users to execute arbitrary SQL commands via the id parameter in /mpms/admin/?page=services/manage_service&id
SQL Injection
Sourcecodester
The id parameter of Update Service Details at /mpms/admin/?page=services/manage_service&id