CVE-2024-7284: SourceCodester Lot Reservation Management System cross site scripting
A vulnerability, which was classified as problematic, was found in SourceCodester Lot Reservation Management System 1.0. This affects an unknown part of the file /admin/ajax.php?action=savesettings. The manipulation of the argument about leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-273153 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7284?
CVE-2024-7284 is classified as a problematic vulnerability impacting the Lot Reservation Management System.
How do I fix CVE-2024-7284?
To mitigate CVE-2024-7284, ensure proper input validation and output encoding for the affected settings in ajax.php.
What type of vulnerability is CVE-2024-7284?
CVE-2024-7284 is a cross-site scripting (XSS) vulnerability.
Which software is affected by CVE-2024-7284?
CVE-2024-7284 affects the SourceCodester Lot Reservation Management System version 1.0.
Where is the vulnerability located in the software for CVE-2024-7284?
The vulnerability CVE-2024-7284 is found in the file /admin/ajax.php, specifically when the action 'save_settings' is executed.