First published: Thu Mar 06 2025(Updated: )
A vulnerability, which was classified as problematic, was found in huang-yk student-manage 1.0. This affects an unknown part of the component Edit a Student Information Page. The manipulation of the argument Class leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
student-manage |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-13902 is classified as problematic due to its potential for cross site scripting vulnerabilities.
To fix CVE-2024-13902, validate and sanitize input in the Edit a Student Information Page component to prevent XSS attacks.
CVE-2024-13902 affects the Edit a Student Information Page component in the huang-yk student-manage application.
CVE-2024-13902 can facilitate cross site scripting (XSS) attacks due to improper handling of user input.
A temporary workaround for CVE-2024-13902 is to disable the affected page until a fix is implemented.