First published: Mon Jan 01 2024(Updated: )
A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/edit_teacher.php of the component Add Enginer. The manipulation of the argument Firstname/Lastname leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249442 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Engineers Online Portal | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0184 has been declared as problematic, indicating it poses a significant security risk.
To fix CVE-2024-0184, it is recommended to update the RRJ Nueva Ecija Engineer Online Portal to a secured version that addresses this vulnerability.
CVE-2024-0184 is a cross-site scripting (XSS) vulnerability affecting the /admin/edit_teacher.php file.
CVE-2024-0184 affects the Add Engineer component of the RRJ Nueva Ecija Engineer Online Portal.
The vulnerability in CVE-2024-0184 allows for the manipulation of the Firstname and Lastname arguments.