CVE-2024-2146

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 3, 2024
Updated: Dec 20, 2024
CWE ID 416

Summary

CVE-2024-2146 is a recently disclosed vulnerability affecting SourceCodester Online Mobile Management Store version 1.0. This issue poses a risk to an unknown functionality of the file /?p=products. The vulnerability allows for cross-site scripting attacks, which can be exploited remotely. Manipulation of the search argument can lead to this exploit. The exploit has been made public, increasing the likelihood of its use in malicious activities. The identifier for this vulnerability is VDB-255499.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share