A
Stored Cross Site Scripting (XSS ) was found in /teacher_avatar.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary java script via the filename parameter.
References
Configurations
History
10 Dec 2024, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-12-09 15:15
Updated : 2024-12-10 18:15
NVD link : CVE-2024-54919
Mitre link : CVE-2024-54919
CVE.ORG link : CVE-2024-54919
JSON object : View
Products Affected
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')