First published: Tue Nov 26 2024(Updated: )
A stored cross-site scripting (XSS) vulnerability was identified in PHPGURUKUL Vehicle Parking Management System v1.13 in /users/profile.php. This vulnerability allows authenticated users to inject malicious XSS scripts into the profile name field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Vehicle Parking Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-53365 has a medium severity rating due to the potential for authenticated users to exploit the stored XSS vulnerability.
To fix CVE-2024-53365, sanitize and validate user inputs in the profile name field to prevent XSS attacks.
CVE-2024-53365 affects users of PHPGURUKUL Vehicle Parking Management System version 1.13.
CVE-2024-53365 is a stored cross-site scripting (XSS) vulnerability that allows the injection of malicious scripts.
CVE-2024-53365 specifically impacts the /users/profile.php component of the PHPGURUKUL Vehicle Parking Management System.