CVE-2024-34224
7.3HIGHCross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML v
Publicado: 5/14/2024Actualizado: 4/16/2025
Descripción
Cross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the firstname, middlename, lastname parameters.
Análisis IAImpulsado por IA
Productos Afectados
oretnom23computer_laboratory_management_system
1.0
Referencias
- https://github.com/dovankha/CVE-2024-34224ExploitThird Party Advisory
- https://github.com/dovankha/CVE-2024-34224ExploitThird Party Advisory