MEDIUM🇵🇱 Wersja polska

CVE-2024-2270

CVSS 4.3v3.1pub. 2024-03-07upd. 2025-03-12

A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /signup.php. The manipulation of the argument name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-256040. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
  • Keerti1924 Online Bookstore Website

    APP
    Keerti1924
    1.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
XSS
CWE
References

Related vulnerabilities

CVE-2024-2271MEDIUM6.3same product

A vulnerability classified as critical has been found in keerti1924 Online-Book-Store-Website 1.0. This affect...

CVE-2024-2272MEDIUM6.3same product

A vulnerability classified as critical was found in keerti1924 Online-Book-Store-Website 1.0. This vulnerabili...

CVE-2024-2267MEDIUM4.3same product

A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0 and classified as problematic. This issu...

CVE-2024-2268MEDIUM4.7same product

A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0. It has been classified as critical. Aff...

CVE-2024-2269MEDIUM6.3same product

A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0. It has been declared as critical. Affec...