• caglararli@hotmail.com
  • 05386281520

CVE-2024-10414 | PHPGurukul Vehicle Record System 1.0 /admin/edit-brand.php Brand Name cross site scripting

Çağlar Arlı      -    2 Views

CVE-2024-10414 | PHPGurukul Vehicle Record System 1.0 /admin/edit-brand.php Brand Name cross site scripting

A vulnerability, which was classified as problematic, was found in PHPGurukul Vehicle Record System 1.0. This affects an unknown part of the file /admin/edit-brand.php. The manipulation of the argument Brand Name leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-10414. It is possible to initiate the attack remotely. Furthermore, there is an exploit available. The initial researcher advisory mentions the parameter "phone_number" to be affected. But this might be a mistake because the textbox field label is "Brand Name".