CVE-2024-5897
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Summary
CVE-2024-5897 is a newly disclosed vulnerability affecting SourceCodester Employee and Visitor Gate Pass Logging System 1.0. This issue lies within the unknown functionality of the /classes/Master.php?f=log_visitor file, which can be exploited through manipulation of an argument name. The exploit enables Cross-Site Scripting (XSS) attacks, posing a significant security risk. Remote attacks are possible, and the vulnerability has been made public, increasing the potential for exploitation. The Vulnerability Database has assigned the identifier VDB-268141 to this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.