CVE-2024-3463
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2024-3463 is a newly disclosed vulnerability in the SourceCodester Laundry Management System 1.0. The issue lies within the file "/karyawan/edit" and is classified as a cross-site scripting (XSS) vulnerability. The manipulation of the argument "karyawan" allows an attacker to inject malicious code, which can be executed in a user's browser when they visit a specially crafted webpage. Since this is a remote attack, an attacker does not require access to the victim's system to exploit this vulnerability. The exploit has already been made public, increasing the risk of potential attacks. The Vulnerability Database assigns this vulnerability the identifier VDB-259744.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Samsung Android
Affected Vendors
- Samsung