Vulnerability CVE-2024-9906


Published: 2024-10-13

Description:
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0. Affected is an unknown function of the file /admin/?page=inventory/view_inventory&id=2. The manipulation of the argument Code leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://vuldb.com/?id.280182
https://vuldb.com/?ctiid.280182
https://vuldb.com/?submit.422612
https://gist.github.com/higordiego/1c1e1709a6832cb63bbe9e9328f55ff9
https://www.sourcecodester.com/

Copyright 2024, cxsecurity.com

 

Back to Top