CVE-2024-9952: SourceCodester Online Eyewear Shop Contact Information Page contact_info cross site scripting
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic. This issue affects some unknown processing of the file /admin/?page=systeminfo/contactinfo of the component Contact Information Page. The manipulation of the argument Address leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9952?
The severity of CVE-2024-9952 is classified as problematic, indicating a potential impact on the affected system.
How do I fix CVE-2024-9952?
To fix CVE-2024-9952, you should apply any available patches for SourceCodester Online Eyewear Shop version 1.0 or implement security controls to mitigate the vulnerability.
What component is affected by CVE-2024-9952?
CVE-2024-9952 affects the Contact Information Page component of the SourceCodester Online Eyewear Shop.
What file is associated with CVE-2024-9952?
CVE-2024-9952 is associated with the file /admin/?page=system_info/contact_info.
What type of manipulation does CVE-2024-9952 involve?
CVE-2024-9952 involves the manipulation of the argument Address.