CVE-2024-10198: code-projects Pharmacy Management System Manage Customer Page manage_customer.php cross site scripting
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /managecustomer.php of the component Manage Customer Page. The manipulation of the argument suppliersname/address leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The initial researcher advisory mentions contradicting files to be affected. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-10198?
CVE-2024-10198 has been classified as a problematic vulnerability affecting the Pharmacy Management System 1.0.
What functionality is affected by CVE-2024-10198?
CVE-2024-10198 affects an unknown functionality of the file /manage_customer.php in the Manage Customer Page component.
How do I fix CVE-2024-10198?
To fix CVE-2024-10198, it is recommended to update the Pharmacy Management System to a version that does not contain this vulnerability.
What type of vulnerabilities does CVE-2024-10198 belong to?
CVE-2024-10198 belongs to web application vulnerabilities related to improper handling of inputs in the Manage Customer Page.
Who is affected by CVE-2024-10198?
Users and organizations utilizing the Pharmacy Management System version 1.0 are affected by CVE-2024-10198.