216.73.216.36

CVE-2024-10842

· Published 05/11/2024 14:15 · Modified 06/11/2024 22:43

Labels: CVE-2024-10842 2024-11-05CVE-2024-10842CWE-707CWE-74CWE-79[email protected]

Essential information

Published
05/11/2024 14:15
Modified
06/11/2024 22:43
Author
Creator
CVSS
2.4 LOW (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N

CVSS metrics

Description

A vulnerability, which was classified as problematic, has been found in romadebrian WEB-Sekolah 1.0. Affected by this issue is some unknown functionality of the file /Admin/Proses_Edit_Akun.php of the component Backend. The manipulation of the argument Username_Baru/Password leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
romadebrian / web-sekolah cpe:2.3:a:romadebrian:web-sekolah:1.0:*:*:*:*:*:*:*

References