CVE-2024-8473: SQL injection vulnerability in Job Portal
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an authenticated user through useremail parameter in /jobportal/admin/login.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8473?
CVE-2024-8473 has a high severity level due to its potential for Cross-Site Scripting attacks.
How do I fix CVE-2024-8473?
To fix CVE-2024-8473, ensure that all user-controlled input is properly sanitized and encoded to prevent XSS vulnerabilities.
What is the impact of CVE-2024-8473?
CVE-2024-8473 can allow attackers to retrieve session details of authenticated users, compromising user accounts.
Which versions are affected by CVE-2024-8473?
CVE-2024-8473 affects PHPGurukul Job Portal version 1.0.
Where can I find more information about CVE-2024-8473?
For more information about CVE-2024-8473, refer to security advisories issued related to the vulnerability.