CVE-2024-25551

Cross Site Scripting (XSS) vulnerability in sourcecodester Simple Student Attendance System v1.0 allows attackers to execute arbitrary code via crafted GET request to web application URL.
Configurations

No configuration.

History

21 Nov 2024, 09:00

Type Values Removed Values Added
References () https://medium.com/%40jose.inaciot/my-first-cve-cve-2024-25551-f91787c05ae9 - () https://medium.com/%40jose.inaciot/my-first-cve-cve-2024-25551-f91787c05ae9 -

29 Oct 2024, 21:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.1
Summary
  • (es) Vulnerabilidad de Cross-Site Scripting (XSS) en el código fuente Simple Student Attendance System v1.0 permite a los atacantes ejecutar código arbitrario a través de una solicitud GET manipulada a la URL de la aplicación web.
CWE CWE-79

03 Mar 2024, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-03 08:15

Updated : 2024-11-21 09:00


NVD link : CVE-2024-25551

Mitre link : CVE-2024-25551

CVE.ORG link : CVE-2024-25551


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')