CVE-2024-10842

A vulnerability, which was classified as problematic, has been found in romadebrian WEB-Sekolah 1.0. Affected by this issue is some unknown functionality of the file /Admin/Proses_Edit_Akun.php of the component Backend. The manipulation of the argument Username_Baru/Password leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Configurations

Configuration 1 (hide)

cpe:2.3:a:romadebrian:web-sekolah:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-11-05 14:15

Updated : 2024-11-06 22:43


NVD link : CVE-2024-10842

Mitre link : CVE-2024-10842

CVE.ORG link : CVE-2024-10842


JSON object : View

Products Affected

romadebrian

  • web-sekolah
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-707

Improper Neutralization