CVE-2024-4737: Campcodes Legal Case Management System vendor cross site scripting
A vulnerability was found in Campcodes Legal Case Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/vendor. The manipulation of the argument companyname/mobile leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-263823.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-4737?
CVE-2024-4737 has been classified as a problematic vulnerability.
How do I fix CVE-2024-4737?
To fix CVE-2024-4737, ensure proper sanitization and validation of user inputs, especially for the company_name/mobile argument.
What type of vulnerability is CVE-2024-4737?
CVE-2024-4737 is a cross-site scripting (XSS) vulnerability affecting Campcodes Legal Case Management System.
Which software versions are affected by CVE-2024-4737?
CVE-2024-4737 affects version 1.0 of Campcodes Legal Case Management System.
Where is the vulnerability CVE-2024-4737 located in the software?
CVE-2024-4737 is located in the /admin/vendor part of the Campcodes Legal Case Management System.