CVE-2024-57488: XSS
Code-Projects Online Car Rental System 1.0 is vulnerable to Cross Site Scripting (XSS) via the vehicalorcview parameter in /admin/edit-vehicle.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-57488?
CVE-2024-57488 is classified as a moderate severity vulnerability due to its potential for Cross Site Scripting (XSS) attacks.
How do I fix CVE-2024-57488?
To fix CVE-2024-57488, ensure that input validation and output encoding are implemented for the vehicalorcview parameter in the /admin/edit-vehicle.php file.
What systems are affected by CVE-2024-57488?
CVE-2024-57488 specifically affects version 1.0 of the Code-Projects Online Car Rental System.
What type of vulnerability is CVE-2024-57488?
CVE-2024-57488 is a Cross Site Scripting (XSS) vulnerability that allows attackers to inject malicious scripts into web pages.
Can CVE-2024-57488 be exploited remotely?
Yes, CVE-2024-57488 can be exploited remotely, allowing attackers to execute harmful scripts in the context of a user's browser.