First published: Fri Mar 01 2024(Updated: )
Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the image parameter in the profile.php component.
Credit: Shubham Pandey cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Petrol Pump Management Software | =1.0 | |
Unknown Petrol Pump Management Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-27744 is classified as a high severity Cross Site Scripting vulnerability.
To fix CVE-2024-27744, ensure input validation and implement proper encoding on the image parameter in the profile.php component.
CVE-2024-27744 is a Cross Site Scripting (XSS) vulnerability that can allow an attacker to execute arbitrary code.
CVE-2024-27744 affects Petrol Pump Management Software version 1.0.
The vulnerable component in CVE-2024-27744 is the profile.php file associated with the image parameter.