CVE-2024-35582: XSS
Published May 28, 2024
·Updated
A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Department input field.
Affected Software
1 affected component
Sourcecodester Laboratory Management System
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 28, 2024
CVE Published
via NVD·08:16 PM
Data Sourced
via NVD·08:16 PM
DescriptionSeverityWeakness
Aug 20, 2024
Data Sourced
via MITRE·03:08 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35582?
CVE-2024-35582 is categorized as a high-severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2024-35582?
To address CVE-2024-35582, validate and sanitize user inputs in the Department input field to prevent script execution.
3
What systems are affected by CVE-2024-35582?
CVE-2024-35582 affects Sourcecodester Laboratory Management System version 1.0.
4
What type of vulnerability is CVE-2024-35582?
CVE-2024-35582 is a cross-site scripting (XSS) vulnerability that allows the execution of arbitrary web scripts.
5
What can attackers do with CVE-2024-35582?
Attackers can exploit CVE-2024-35582 to execute arbitrary web scripts or HTML via a crafted payload.