First published: Sun Sep 22 2024(Updated: )
A vulnerability was found in SourceCodester Modern Loan Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file update_loan_record.php. The manipulation of the argument amount leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mayurik Modern Loan Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-9089 is classified as a problematic vulnerability due to its potential impact on cross-site scripting.
CVE-2024-9089 affects the handling of the 'amount' argument in the update_loan_record.php file, which can lead to cross-site scripting vulnerabilities.
To fix CVE-2024-9089, validate and sanitize user input on the 'amount' parameter in the update_loan_record.php file.
An attacker can exploit CVE-2024-9089 to perform cross-site scripting attacks on the affected system.
Yes, version 1.0 of the Modern Loan Management System is affected by CVE-2024-9089.