First published: Wed Aug 07 2024(Updated: )
A Reflected Cross Site Scripting (XSS) vulnerability was found in " /smsa/admin_login.php" in Kashipara Responsive School Management System v3.2.0, which allows remote attackers to execute arbitrary code via "error" parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Lopalopa Responsive School Management System | =3.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-41241 has a high severity due to its potential for executing arbitrary code through a reflected Cross Site Scripting (XSS) attack.
To remediate CVE-2024-41241, it is essential to validate and sanitize all user inputs on the 'error' parameter in the /smsa/admin_login.php page.
CVE-2024-41241 affects users of the Lopalopa Responsive School Management System version 3.2.0.
Yes, CVE-2024-41241 can be exploited by remote attackers due to the nature of the reflected XSS vulnerability.
The specific system vulnerable to CVE-2024-41241 is the Lopalopa Responsive School Management System version 3.2.0.