Medium severity5.4NVD Advisory· Published Apr 17, 2024· Updated Jun 17, 2026
CVE-2024-30989
CVE-2024-30989
Description
Cross Site Scripting vulnerability in /edit-client-details.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code via the "cname", "comname", "state" and "city" parameter.
Affected products
3- cpe:2.3:a:phpgurukul:client_management_system:1.1:*:*:*:*:*:*:*
- phpgurukul/Client Management System using PHP & MySQLdescription
- Range: <1.1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.