CVE-2024-2065: SourceCodester Barangay Population Monitoring System update-resident.php cross site scripting
A vulnerability was found in SourceCodester Barangay Population Monitoring System up to 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /endpoint/update-resident.php. The manipulation of the argument fullname leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-255380.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2065?
CVE-2024-2065 is classified as problematic, indicating a significant security risk.
How do I fix CVE-2024-2065?
To mitigate CVE-2024-2065, ensure that input validation and sanitization are implemented in the /endpoint/update-resident.php file.
What type of vulnerability is CVE-2024-2065?
CVE-2024-2065 is a cross-site scripting (XSS) vulnerability affecting the Barangay Population Monitoring System.
Which versions are affected by CVE-2024-2065?
CVE-2024-2065 affects all versions of SourceCodester Barangay Population Monitoring System up to 1.0.
What functionality is exploited in CVE-2024-2065?
CVE-2024-2065 exploits the full_name argument in the /endpoint/update-resident.php functionality.