CVE-2024-4730
CVSS 2.0 Score 4.0 of 10 (medium)
Details
Published May 14, 2024
Updated: Jun 12, 2024
CWE ID 79
Summary
CVE-2024-4730 is a newly disclosed vulnerability affecting the Campcodes Legal Case Management System 1.0. This issue lies within an unidentified function of the /admin/judge file, where manipulation of the judge_name argument can trigger cross-site scripting (XSS). An attacker can exploit this remotely, potentially injecting malicious code into a user's browser. This vulnerability, identified as VDB-263808, has been made public and could be exploited.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.