CVE-2024-34224
7.3HIGHCross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML v
Published: 5/14/2024Updated: 4/16/2025
Description
Cross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the firstname, middlename, lastname parameters.
AI AnalysisPowered by AI
Affected Products
oretnom23computer_laboratory_management_system
1.0
References
- https://github.com/dovankha/CVE-2024-34224ExploitThird Party Advisory
- https://github.com/dovankha/CVE-2024-34224ExploitThird Party Advisory