CVE-2024-8154: SourceCodester QR Code Bookmark System Parameter update-bookmark.php cross site scripting
A vulnerability classified as problematic has been found in SourceCodester QR Code Bookmark System 1.0. Affected is an unknown function of the file /endpoint/update-bookmark.php of the component Parameter Handler. The manipulation of the argument tblbookmarkid/name/url leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8154?
CVE-2024-8154 is classified as a problematic vulnerability.
How do I fix CVE-2024-8154?
To fix CVE-2024-8154, update to the latest version of SourceCodester QR Code Bookmark System.
What components are affected by CVE-2024-8154?
CVE-2024-8154 affects the Parameter Handler in the file /endpoint/update-bookmark.php.
What type of vulnerability is CVE-2024-8154?
CVE-2024-8154 involves argument manipulation of tbl_bookmark_id/name/url.
Which version of the software is impacted by CVE-2024-8154?
CVE-2024-8154 impacts version 1.0 of the SourceCodester QR Code Bookmark System.