First published: Fri Mar 01 2024(Updated: )
A vulnerability, which was classified as problematic, was found in SourceCodester Petrol Pump Management Software 1.0. Affected is an unknown function of the file /admin/app/profile_crud.php. The manipulation of the argument username leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-255378 is the identifier assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mayurik Petrol Pump Management | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-2063 has been classified as a problematic vulnerability.
CVE-2024-2063 is a cross-site scripting (XSS) vulnerability.
To fix CVE-2024-2063, sanitize and validate user inputs in the 'username' argument to prevent XSS.
CVE-2024-2063 affects SourceCodester Petrol Pump Management Software version 1.0.
The vulnerability in CVE-2024-2063 is located in the file /admin/app/profile_crud.php.