CVE-2024-9799: SourceCodester Profile Registration without Reload Refresh add.php cross site scripting
A vulnerability has been found in SourceCodester Profile Registration without Reload Refresh 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file add.php. The manipulation of the argument emailaddress/address/companyname/jobtitle/jobDescriptionparameter leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9799?
CVE-2024-9799 is classified as a problematic vulnerability affecting the SourceCodester Profile Registration without Reload Refresh 1.0.
How do I fix CVE-2024-9799?
To fix CVE-2024-9799, ensure that vulnerable parameters in add.php are validated and sanitized before use.
Which version of software is affected by CVE-2024-9799?
CVE-2024-9799 affects version 1.0 of SourceCodester Profile Registration without Reload Refresh.
What type of vulnerability is CVE-2024-9799?
CVE-2024-9799 involves manipulation of argument inputs, which could potentially lead to unauthorized actions.
Where is the vulnerable code located in CVE-2024-9799?
The vulnerability CVE-2024-9799 is found in the file add.php within the affected software.