A Stored Cross Site Scripting (XSS ) was found in /teacher_avatar.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary java script via the filename parameter.
References
Configurations
History
No history.
Information
Published : 2024-12-09 15:15
Updated : 2024-12-10 18:15
NVD link : CVE-2024-54919
Mitre link : CVE-2024-54919
CVE.ORG link : CVE-2024-54919
JSON object : View
Products Affected
lopalopa
- e-learning_management_system
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
