CVE-2024-12354
Severity
4.8MEDIUM
EPSS
0.1%
top 64.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 9
Description
A vulnerability, which was classified as critical, was found in SourceCodester Phone Contact Manager System 1.0. Affected is the function UserInterface::MenuDisplayStart of the component User Menu. The manipulation leads to buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used.
CVSS vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N