CVE-2024-33306

Severity
7.4HIGH
EPSS
0.1%
top 70.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 1

Description

SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "First Name" parameter in Create User.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:NExploitability: 2.8 | Impact: 4.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-xv27-hp74-6hr9: SourceCodester Laboratory Management System 12024-05-01
CVEList
CVE-2024-33306: SourceCodester Laboratory Management System 12024-05-01
CVE-2024-33306 (HIGH CVSS 7.4) | SourceCodester Laboratory Managemen | cvebase.io