CVE-2024-6212

A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. Affected by this issue is the function get_student of the file student_form.php. The manipulation of the argument id leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-269276.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:simple_student_attendance_system:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-06-21 00:15

Updated : 2024-11-21 09:49


NVD link : CVE-2024-6212

Mitre link : CVE-2024-6212

CVE.ORG link : CVE-2024-6212


JSON object : View

Products Affected

oretnom23

  • simple_student_attendance_system
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')