CVE-2024-12980: code-projects Job Recruitment _all_edits.php fln_update cross site scripting
A vulnerability was found in code-projects Job Recruitment 1.0. It has been classified as problematic. Affected is the function flnupdate of the file /parse/alledits.php. The manipulation of the argument fname/lname leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12980?
CVE-2024-12980 has been classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2024-12980?
To fix CVE-2024-12980, sanitize and validate user input in the fln_update function to prevent XSS attacks.
What type of vulnerability is CVE-2024-12980?
CVE-2024-12980 is a cross-site scripting (XSS) vulnerability.
Which software is affected by CVE-2024-12980?
CVE-2024-12980 affects the code-projects Job Recruitment version 1.0.
What is impacted by the vulnerability CVE-2024-12980?
The vulnerability CVE-2024-12980 impacts the function fln_update in the file /_parse/_all_edits.php.