CVE-2024-12982: PHPGurukul Blood Bank & Donor Management System update-contactinfo.php cross site scripting
A vulnerability was found in PHPGurukul Blood Bank & Donor Management System 2.4. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /bbdms/admin/update-contactinfo.php. The manipulation of the argument Address leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12982?
CVE-2024-12982 has been rated as problematic.
What functionality is affected by CVE-2024-12982?
CVE-2024-12982 affects the functionality of the file /bbdms/admin/update-contactinfo.php.
What type of vulnerability is CVE-2024-12982?
CVE-2024-12982 is characterized as a cross-site scripting (XSS) vulnerability.
How do I fix CVE-2024-12982?
To fix CVE-2024-12982, ensure proper input validation and sanitization for the Address parameter.
Which system is impacted by CVE-2024-12982?
CVE-2024-12982 impacts the PHPGurukul Blood Bank & Donor Management System version 2.4.