CVE-2024-24097: XSS
Published Mar 12, 2024
·Updated
Cross Site Scripting (XSS) vulnerability in Code-projects Scholars Tracking System 1.0 allows attackers to run arbitrary code via the News Feed.
Affected Software
2 affected components
Code-projects Scholars Tracking System
Code-projects Scholars Tracking System=1.0
Event History
Mar 12, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-24097?
CVE-2024-24097 is classified as a critical severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2024-24097?
To fix CVE-2024-24097, update the Code-projects Scholars Tracking System to the latest version that addresses this XSS vulnerability.
3
What type of attack does CVE-2024-24097 enable?
CVE-2024-24097 enables Cross Site Scripting (XSS) attacks which allow attackers to inject and execute malicious scripts.
4
Who is affected by CVE-2024-24097?
Users of Code-projects Scholars Tracking System version 1.0 are affected by CVE-2024-24097.
5
Can CVE-2024-24097 be exploited remotely?
Yes, CVE-2024-24097 can be exploited remotely, allowing attackers to run malicious code through the News Feed feature.