ZeroHour

CVE-2024-34224

PoC
CVSS 3.1
7.3 high
EPSS
<1%p57
Published
()
Modified
Description

Cross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the firstname, middlename, lastname parameters.

Vendors
oretnom23
Products
computer laboratory management system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.