CVE-2024-35583: XSS
Published May 28, 2024
·Updated
A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Remarks input field.
Affected Software
1 affected component
Sourcecodester Laboratory Management System
Event History
Jan 1, 1970
CVE Published
via MITRE·12:00 AM
May 28, 2024
CVE Published
via NVD·08:16 PM
Data Sourced
via NVD·08:16 PM
DescriptionSeverityWeakness
Aug 2, 2024
Data Sourced
via MITRE·03:21 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35583?
CVE-2024-35583 is considered a high-severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2024-35583?
To fix CVE-2024-35583, ensure proper input validation and sanitization on the Remarks input field.
3
What systems are affected by CVE-2024-35583?
CVE-2024-35583 affects Sourcecodester Laboratory Management System version 1.0.
4
Can CVE-2024-35583 be exploited remotely?
Yes, CVE-2024-35583 can be exploited remotely by an attacker sending a crafted payload to the affected system.
5
What are the potential impacts of CVE-2024-35583?
The potential impacts of CVE-2024-35583 include the execution of arbitrary web scripts or HTML, leading to session hijacking or defacement.