CVE-2024-33305: XSS
Published May 2, 2024
·Updated
SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Middle Name" parameter in Create User.
Affected Software
2 affected components
Sourcecodester Laboratory Management System
Sourcecodester Laboratory Management System=1.0
Event History
May 2, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33305?
CVE-2024-33305 is classified as a high severity vulnerability due to its potential for Cross Site Scripting (XSS) attacks.
2
How do I fix CVE-2024-33305?
To fix CVE-2024-33305, sanitize and validate the input for the 'Middle Name' parameter to prevent script injection.
3
What is Cross Site Scripting in the context of CVE-2024-33305?
In the context of CVE-2024-33305, Cross Site Scripting allows attackers to inject malicious scripts into web pages viewed by other users.
4
Which parameter is vulnerable in CVE-2024-33305?
The 'Middle Name' parameter in the Create User functionality is the vulnerable component in CVE-2024-33305.
5
Is there a known exploit for CVE-2024-33305?
Currently, there are no documented exploits publicly available for CVE-2024-33305.