Vulnerability CVE-2024-47095


Published: 2024-10-08

Description:
Cross Site Scripting vulnerability in Follet School Solutions Destiny before v22.0.1 AU1 allows a remote attacker to run arbitrary client-side code via the expiredSupportMessage parameter of handleloginform.do.

 References:
https://www.securin.io/zerodays/cve-2024-47095-reflected-cross-site-scripting-in-follett-school-solutions-destiny-library-manager/

Copyright 2025, cxsecurity.com

 

Back to Top