CVE-2024-2071
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Mar 1, 2024
Updated: May 17, 2024
CWE ID 79
Summary
CVE-2024-2071 is a recently identified vulnerability affecting the SourceCodester FAQ Management System 1.0. This issue lies within the Update FAQ component and involves a cross-site scripting (XSS) vulnerability. By manipulating the argument "Frequently Asked Question," an attacker can inject malicious code that may be executed in a user's browser. This attack can be launched remotely, posing a significant risk to users of the affected system. (VDB-255386)
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Adobe Commerce
Affected Vendors
- Adobe
Advisories, Assessments, and Mitigations
Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future
Note: This is just a basic overview providing quick insights into CVE-2024-2071 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
- Gain complete coverage of your cyber, third party, and physical attack surface
- Proactively mitigate threats before they turn into costly attacks
- Make fast, effective, data-driven decisions