VYPR
Unrated severityNVD Advisory· Published Aug 11, 2024· Updated Aug 12, 2024

SourceCodester Car Driving School Management System SystemSettings.php update_settings_info cross site scripting

CVE-2024-7677

Description

A vulnerability was found in SourceCodester Car Driving School Management System 1.0. It has been declared as problematic. Affected by this vulnerability is the function update_settings_info of the file /classes/SystemSettings.php?f=update_settings. The manipulation of the argument contact/address leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.