CVE-2024-7793: SourceCodester Task Progress Tracker add-task.php cross site scripting
A vulnerability was found in SourceCodester Task Progress Tracker 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /endpoint/add-task.php. The manipulation of the argument taskname leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-7793?
CVE-2024-7793 is classified as a cross site scripting vulnerability.
How do I fix CVE-2024-7793?
To fix CVE-2024-7793, validate and sanitize user input for the task_name parameter in the /endpoint/add-task.php file.
What software versions are affected by CVE-2024-7793?
CVE-2024-7793 affects version 1.0 of the SourceCodester Task Progress Tracker.
What type of attack does CVE-2024-7793 enable?
CVE-2024-7793 enables attackers to perform cross site scripting attacks.
Where is the vulnerable component located for CVE-2024-7793?
The vulnerability in CVE-2024-7793 is located in the /endpoint/add-task.php file.