CVE-2024-46335

Severity
4.6MEDIUM
EPSS
0.1%
top 83.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 17

Description

PHPGurukul Complaint Management System 2.0 is vulnerble to Cross Site Scripting (XSS) via the fromdate and todate parameters in between-date-userreport.php.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:NExploitability: 2.1 | Impact: 2.5

Affected Packages1 packages

🔴Vulnerability Details

2
CVEList
CVE-2024-46335: PHPGurukul Complaint Management System 22025-11-17
GHSA
GHSA-6f3w-qm6q-m429: PHPGurukul Complaint Management System 22025-11-17
CVE-2024-46335 (MEDIUM CVSS 4.6) | PHPGurukul Complaint Management Sys | cvebase.io