vendor:
                    Petrol Pump Management Software
                by:
                    Shubham Pandey
                6.1
                        CVSS
                    HIGH
                    SQL Injection
                    89
                        CWE
                    Product Name: Petrol Pump Management Software
                    Affected Version From:  1
                    Affected Version To:  1
                    Patch Exists: NO
                    Related CWE: CVE-2024-27746
                    CPE:  a:petrol_pump_management_software:petrol_pump_management_software:1.0
                    Platforms Tested:  Windows, Linux
                    2024
                    Petrol Pump Management Software v.1.0 – SQL Injection
A SQL Injection vulnerability was discovered in Petrol Pump Management Software v.1.0. This vulnerability allows an attacker to execute arbitrary code by injecting a malicious payload into the email address parameter within the index.php component.
Mitigation:
					To mitigate this vulnerability, input validation and parameterized queries should be implemented to prevent SQL Injection attacks.