CVE-2024-8555: SourceCodester Clinics Patient Management System congratulations.php redirect
A vulnerability was found in SourceCodester Clinics Patient Management System 2.0. It has been classified as problematic. Affected is an unknown function of the file congratulations.php. The manipulation of the argument gotopage leads to open redirect. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-8555?
CVE-2024-8555 is classified as problematic due to its potential for exploitation through open redirect.
How do I fix CVE-2024-8555?
To address CVE-2024-8555, ensure proper validation and sanitization of the goto_page parameter in the congratulations.php file.
What software is affected by CVE-2024-8555?
CVE-2024-8555 affects SourceCodester Clinic's Patient Management System version 2.0.
What type of vulnerability is CVE-2024-8555?
CVE-2024-8555 is characterized as an open redirect vulnerability.
Can CVE-2024-8555 lead to further attacks?
Yes, CVE-2024-8555 can potentially be exploited to facilitate phishing attacks or redirect users to malicious sites.