CVE-2024-40473

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Aug 12, 2024
Updated: Sep 3, 2024
CWE ID 79

Summary

CVE-2024-40473 is a stored Cross-Site Scripting (XSS) vulnerability affecting the "manage_houses.php" file in the SourceCodester Best House Rental Management System v1.0. This issue enables remote attackers to inject and execute malicious scripts by exploiting the vulnerabilities in the "House_no" and "Description" parameter fields. Successful attacks could lead to the execution of arbitrary code on affected systems, potentially resulting in data theft or unauthorized system access. Users are strongly urged to update their systems to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share