CVE-2024-0286: PHPGurukul Hospital Management System Contact Form index.php#contact_us cross site scripting
A vulnerability, which was classified as problematic, was found in PHPGurukul Hospital Management System 1.0. This affects an unknown part of the file index.php#contactus of the component Contact Form. The manipulation of the argument Name/Email/Message leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249843.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-0286?
CVE-2024-0286 is classified as problematic, indicating a significant security risk.
How do I fix CVE-2024-0286?
To fix CVE-2024-0286, validate and sanitize input in the Contact Form component to prevent cross-site scripting.
What components are affected by CVE-2024-0286?
CVE-2024-0286 affects the Contact Form component located in index.php#contact_us of PHPGurukul Hospital Management System version 1.0.
What type of vulnerability is CVE-2024-0286?
CVE-2024-0286 is a cross-site scripting (XSS) vulnerability.
Are there any known exploits for CVE-2024-0286?
At this time, there have been no specific exploits publicly disclosed for CVE-2024-0286.