First published: Sat Nov 30 2024(Updated: )
A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown part of the file /vendas.php. The manipulation of the argument notaFiscal leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Anisha Farmacia | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11997 is classified as problematic, indicating it poses a significant risk.
To remediate CVE-2024-11997, ensure proper sanitization and validation of user inputs in the notaFiscal argument within vendas.php.
CVE-2024-11997 is a Cross-Site Scripting (XSS) vulnerability.
Yes, CVE-2024-11997 can be exploited remotely by manipulating the notaFiscal argument.
CVE-2024-11997 affects version 1.0 of Anisha Farmacia.