CVE-2024-24134: XSS
Published Jan 29, 2024
·Updated
Sourcecodester Online Food Menu 1.0 is vulnerable to Cross Site Scripting (XSS) via the 'Menu Name' and 'Description' fields in the Update Menu section.
Affected Software
1 affected component
Remyandrade Online Food Menu=1.0
Event History
Jan 29, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-24134?
CVE-2024-24134 has a medium severity rating due to its potential for exploitation via Cross Site Scripting (XSS).
2
How do I fix CVE-2024-24134?
To fix CVE-2024-24134, ensure proper input validation and sanitization in the 'Menu Name' and 'Description' fields during the update menu process.
3
What software is affected by CVE-2024-24134?
CVE-2024-24134 affects Sourcecodester Online Food Menu version 1.0.
4
What type of vulnerability is CVE-2024-24134?
CVE-2024-24134 is classified as a Cross Site Scripting (XSS) vulnerability.
5
Can CVE-2024-24134 be exploited remotely?
Yes, CVE-2024-24134 can potentially be exploited remotely by injecting malicious scripts through the vulnerable input fields.