# CVE-2024-10752

## Summary

- **CVE ID:** CVE-2024-10752
- **Severity:** MEDIUM
- **CVSS Score:** 7.5 (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N)
- **CWE:** CWE-89, CWE-74, CWE-707
- **Published:** Nov 4, 2024
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects an unknown part of the file /productsadd.php. The manipulation of the argument id/name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions contradicting file names to be affected.

## Affected Products

- Codezips — Pet Shop Management System (1.0)

## References

- [CNA](https://vuldb.com/?id.282921)
- [CNA](https://vuldb.com/?ctiid.282921)
- [CNA](https://vuldb.com/?submit.436316)
- [CNA](https://github.com/primaryboy/CVE/issues/1)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.61%
- **EPSS Percentile:** 47.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._