CVE-2020-24198: XSS
Published Sep 9, 2020
·Updated
A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.'
Affected Software
1 affected component
Stock Management System Project Stock Management System=1.0
Event History
Sep 9, 2020
CVE Published
via MITRE·02:05 PM
Data Sourced
via MITRE·02:05 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-24198?
CVE-2020-24198 is classified as a high-severity vulnerability due to its potential for persistent cross-site scripting attacks.
2
How do I fix CVE-2020-24198?
To fix CVE-2020-24198, update the Stock Management System to a version that has patched this vulnerability.
3
What are the consequences of exploiting CVE-2020-24198?
Exploiting CVE-2020-24198 allows attackers to inject arbitrary web scripts or HTML, potentially leading to data theft or session hijacking.
4
Is CVE-2020-24198 a remote vulnerability?
Yes, CVE-2020-24198 can be exploited remotely by attackers without local access to the system.
5
Which software is affected by CVE-2020-24198?
CVE-2020-24198 specifically affects Sourcecodester Stock Management System version 1.0.