CVE-2024-13013
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Dec 29, 2024
Updated: Feb 18, 2025
CWE ID 94
CWE ID 79
Summary
CVE-2024-13013 is a recently disclosed vulnerability affecting the PHPGurukul Maid Hiring Management System 1.0. The issue lies within the Contact Us Page's /admin/contactus.php file and stems from an unknown function. An attacker can exploit this vulnerability by manipulating the page title argument, leading to a cross-site scripting (XSS) attack. This vulnerability allows remote code execution, increasing the risk to affected systems. The exploit has been made public, making it essential that users apply the necessary patches to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.