CVE-2024-3532: Campcodes Complete Online Student Management System attendance_view.php cross site scripting
A vulnerability classified as problematic has been found in Campcodes Complete Online Student Management System 1.0. Affected is an unknown function of the file attendanceview.php. The manipulation of the argument FirstRecord leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-259902 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3532?
CVE-2024-3532 is classified as problematic due to its potential for cross-site scripting vulnerabilities.
How do I fix CVE-2024-3532?
To fix CVE-2024-3532, validate and sanitize input for the FirstRecord parameter in the attendance_view.php file.
What systems are affected by CVE-2024-3532?
CVE-2024-3532 affects Campcodes Complete Online Student Management System version 1.0.
What type of vulnerability is CVE-2024-3532?
CVE-2024-3532 is identified as a cross-site scripting (XSS) vulnerability.
What is the impact of CVE-2024-3532 on users?
The impact of CVE-2024-3532 can lead to unauthorized script execution in the user's browser, potentially compromising user data.