CVE-2024-1265: CodeAstro University Management System Attendance Management att_add.php cross site scripting
A vulnerability classified as problematic has been found in CodeAstro University Management System 1.0. Affected is an unknown function of the file /attadd.php of the component Attendance Management. The manipulation of the argument Student Name leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-253008.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1265?
CVE-2024-1265 is classified as a problematic vulnerability.
How do I fix CVE-2024-1265?
To fix CVE-2024-1265, sanitize user input in the Student Name argument to prevent cross site scripting.
What systems are affected by CVE-2024-1265?
CVE-2024-1265 affects CodeAstro University Management System version 1.0.
What type of vulnerability is CVE-2024-1265?
CVE-2024-1265 is a cross site scripting (XSS) vulnerability.
Where is the vulnerability located in CVE-2024-1265?
The vulnerability in CVE-2024-1265 is located in the /att_add.php file of the Attendance Management component.