ZeroHour

CVE-2024-55268

PoC
CVSS 3.1
6.1 medium
EPSS
<1%p35
Published
()
Modified
Description

A Reflected Cross Site Scripting (XSS) vulnerability was found in /covidtms/registered-user-testing.php in PHPGurukul COVID 19 Testing Management System 1.0 which allows remote attackers to execute arbitrary code via the regmobilenumber parameter.

Vendors
phpgurukul
Products
covid 19 testing management system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.