Back

HIGH

Cross-Site Scripting (XSS) vulnerability in Janobe School Event Management System

Published Aug 6, 2024

Description

Cross-Site Scripting (XSS) vulnerability in School Event Management System affecting version 1.0. An attacker could exploit this vulnerability by sending a specially crafted query to the server and retrieve all the information stored in it through the 'view' parameter in '/student/index.php'.

Affected products

Remediation

Vendor solution

There is no reported solution at this time.

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner INCIBE
Published Aug 6, 2024
Updated Aug 8, 2024
Reserved Apr 29, 2024
CISA Vulnrichment
Updated Aug 8, 2024
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner INCIBE
Published Aug 6, 2024
Updated Aug 8, 2024
Exploited since n/a
EUVD-2024-34572