CVE-2024-3357: SourceCodester Aplaya Beach Resort Online Reservation System index.php cross site scripting
A vulnerability classified as problematic has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/modreports/index.php. The manipulation of the argument end leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-259461 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3357?
CVE-2024-3357 is classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2024-3357?
To fix CVE-2024-3357, sanitize user inputs in the admin/mod_reports/index.php file to prevent script injection.
What software is affected by CVE-2024-3357?
CVE-2024-3357 affects SourceCodester Aplaya Beach Resort Online Reservation System version 1.0.
What type of vulnerability is CVE-2024-3357?
CVE-2024-3357 is a cross-site scripting (XSS) vulnerability.
Can CVE-2024-3357 lead to data theft?
Yes, CVE-2024-3357 can lead to data theft by allowing attackers to execute malicious scripts in users' browsers.