CVE-2024-4730

CVSS 2.0 Score 4.0 of 10 (medium)

Details

Published May 14, 2024
Updated: Jun 12, 2024
CWE ID 79

Summary

CVE-2024-4730 is a newly disclosed vulnerability affecting the Campcodes Legal Case Management System 1.0. This issue lies within an unidentified function of the /admin/judge file, where manipulation of the judge_name argument can trigger cross-site scripting (XSS). An attacker can exploit this remotely, potentially injecting malicious code into a user's browser. This vulnerability, identified as VDB-263808, has been made public and could be exploited.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share