CVE-2024-0184: RRJ Nueva Ecija Engineer Online Portal Add Enginer edit_teacher.php cross site scripting
A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/editteacher.php of the component Add Enginer. The manipulation of the argument Firstname/Lastname leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249442 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0184?
CVE-2024-0184 has been declared as problematic, indicating it poses a significant security risk.
How do I fix CVE-2024-0184?
To fix CVE-2024-0184, it is recommended to update the RRJ Nueva Ecija Engineer Online Portal to a secured version that addresses this vulnerability.
What type of vulnerability is CVE-2024-0184?
CVE-2024-0184 is a cross-site scripting (XSS) vulnerability affecting the /admin/edit_teacher.php file.
Which component of the RRJ Nueva Ecija Engineer Online Portal is affected by CVE-2024-0184?
CVE-2024-0184 affects the Add Engineer component of the RRJ Nueva Ecija Engineer Online Portal.
What specific input is manipulated in CVE-2024-0184?
The vulnerability in CVE-2024-0184 allows for the manipulation of the Firstname and Lastname arguments.