VYPR
Low severity3.5NVD Advisory· Published Jan 30, 2024· Updated Jun 17, 2026

CVE-2024-1026

CVE-2024-1026

Description

A vulnerability was found in Cogites eReserv 7.7.58 and classified as problematic. This issue affects some unknown processing of the file front/admin/config.php. The manipulation of the argument id with the input %22%3E%3Cscript%3Ealert(%27XSS%27)%3C/script%3E leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-252293 was assigned to this vulnerability.

Affected products

3
  • Cogites/eReservllm-fuzzy3 versions
    <7.7.58+ 2 more
    • (no CPE)range: <7.7.58
    • (no CPE)range: 7.7.58
    • cpe:2.3:a:cogites:ereserv:7.7.58:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.