A flaw has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected is an unknown function of the file /admin/ajax.php?action=save_student. Executing manipulation of the argument Name can lead to cross site scripting. The attack may be performed from remote. The exploit has been published and may be used.
References
Link | Resource |
---|---|
https://gist.github.com/topsky979/86480890cc621c240c86e95a3de9ecc4 | Exploit Third Party Advisory |
https://vuldb.com/?ctiid.272789 | Permissions Required VDB Entry |
https://vuldb.com/?id.272789 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.380425 | Third Party Advisory VDB Entry |
https://gist.github.com/topsky979/86480890cc621c240c86e95a3de9ecc4 | Exploit Third Party Advisory |
https://vuldb.com/?ctiid.272789 | Permissions Required VDB Entry |
https://vuldb.com/?id.272789 | Third Party Advisory VDB Entry |
https://vuldb.com/?submit.380425 | Third Party Advisory VDB Entry |
Configurations
History
01 Sep 2025, 10:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-94 | |
Summary | (en) A flaw has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected is an unknown function of the file /admin/ajax.php?action=save_student. Executing manipulation of the argument Name can lead to cross site scripting. The attack may be performed from remote. The exploit has been published and may be used. |
Information
Published : 2024-07-30 05:15
Updated : 2025-09-29 21:07
NVD link : CVE-2024-7218
Mitre link : CVE-2024-7218
CVE.ORG link : CVE-2024-7218
JSON object : View
Products Affected
oretnom23
- school_log_management_system