CVE-2024-38959: XSS
Published Jul 9, 2024
·Updated
Cross Site Scripting vulnerability in Creativeitem Academy LMS Learning Management System v.6.8.1 allows a remote attacker to execute arbitrary code and obtain sensitive information via the string parameter.
Affected Software
2 affected components
Creativeitem Academy LMS
Creativeitem Academy LMS=6.8.1
Event History
Jul 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-38959?
CVE-2024-38959 has a medium severity rating due to the potential for remote code execution and data exposure.
2
How do I fix CVE-2024-38959?
To fix CVE-2024-38959, update Creativeitem Academy LMS to the latest version that addresses this vulnerability.
3
What is the impact of CVE-2024-38959 on users?
The impact of CVE-2024-38959 allows attackers to execute arbitrary code and potentially access sensitive information from affected systems.
4
Which versions of Creativeitem Academy LMS are affected by CVE-2024-38959?
CVE-2024-38959 affects Creativeitem Academy LMS version 6.8.1 and possibly earlier versions.
5
Is CVE-2024-38959 a Cross Site Scripting vulnerability?
Yes, CVE-2024-38959 is specifically identified as a Cross Site Scripting vulnerability.