CVE-2024-4735: Campcodes Legal Case Management System tasks cross site scripting
A vulnerability has been found in Campcodes Legal Case Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/tasks. The manipulation of the argument tasksubject leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-263821 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-4735?
CVE-2024-4735 is classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2024-4735?
To mitigate CVE-2024-4735, ensure proper input validation and sanitization on the task_subject argument in the /admin/tasks functionality.
What systems are affected by CVE-2024-4735?
CVE-2024-4735 affects version 1.0 of the Campcodes Legal Case Management System.
What type of vulnerability is CVE-2024-4735?
CVE-2024-4735 is a cross-site scripting (XSS) vulnerability.
Can CVE-2024-4735 be exploited remotely?
Yes, CVE-2024-4735 can potentially be exploited remotely to execute malicious scripts in the user's browser.