Critical severity9.8NVD Advisory· Published Jan 10, 2025· Updated Jun 17, 2026
CVE-2024-57686
CVE-2024-57686
Description
A Cross Site Scripting (XSS) vulnerability was found in /landrecordsys/admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the "pagetitle" parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:phpgurukul:land_record_system:1.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:phpgurukul:land_record_system:1.0:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: = 1.0
Patches
Vulnerability mechanics
References
2- github.com/Santoshcyber1/CVE-wirteup/blob/main/Phpgurukul/Land%20record/Reflected%20Cross%20Site%20Scripting.pdfnvdExploitThird Party Advisory
- github.com/lhRaMk7/notebook/blob/main/phar_rcenvdBroken Link
News mentions
0No linked articles in our index yet.