Severity
5.3MEDIUM
EPSS
0.1%
top 65.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 29

Description

A vulnerability has been found in code-projects Farmacia 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /pagamento.php. The manipulation of the argument total leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

Affected Packages2 packages

🔴Vulnerability Details

2
CVEList
code-projects Farmacia pagamento.php cross site scripting2024-11-29
GHSA
GHSA-gpf9-rcg2-w95g: A vulnerability has been found in code-projects Farmacia 12024-11-29
CVE-2024-11995 (MEDIUM CVSS 5.3) | A vulnerability has been found in c | cvebase.io