CVE-2024-2065

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 1, 2024
Updated: Dec 17, 2024
CWE ID 59

Summary

CVE-2024-2065 is a newly disclosed vulnerability that affects the SourceCodester Barangay Population Monitoring System up to version 1.0. This issue is classified as problematic and involves an unknown functionality of the file /endpoint/update-resident.php. attackers can exploit this vulnerability by manipulating the argument "full_name," leading to cross-site scripting (XSS) attacks. These attacks can be launched remotely, allowing an adversary to inject malicious code into a user's browser and potentially steal sensitive information or take control of the user's account. As this exploit has been made public, it is essential that users of the affected system upgrade to a patched version as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share