CVE-2024-5385: oretnom23 Online Car Wash Booking System cross site scripting
A vulnerability, which was classified as problematic, has been found in oretnom23 Online Car Wash Booking System 1.0. This issue affects some unknown processing of the file /admin/?page=user/list. The manipulation of the argument First Name/Last Name with the input <script>confirm (document.cookie)</script> leads to cross site scripting. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-266303.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5385?
CVE-2024-5385 has been classified as problematic, indicating a significant risk to the affected system.
How do I fix CVE-2024-5385?
To remediate CVE-2024-5385, you should sanitize and validate user inputs to prevent script injection.
What systems are affected by CVE-2024-5385?
CVE-2024-5385 affects the Oretnom23 Online Car Wash Booking System version 1.0.
What type of vulnerability is CVE-2024-5385?
CVE-2024-5385 is a cross-site scripting (XSS) vulnerability.
Where does CVE-2024-5385 occur in the application?
CVE-2024-5385 occurs in the file /admin/?page=user/list during processing of the First Name/Last Name arguments.