Sourcecodester Laboratory Management System vulnerabilities

5 known vulnerabilities affecting sourcecodester/laboratory_management_system.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2024-34231HIGHCVSS 7.1v1.02024-05-14
CVE-2024-34231 [HIGH] CWE-79 CVE-2024-34231: A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allow A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the System Short Name parameter.
nvd
CVE-2024-34230MEDIUMCVSS 6.1v1.02024-05-14
CVE-2024-34230 [MEDIUM] CWE-79 CVE-2024-34230: A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allow A cross-site scripting (XSS) vulnerability in Sourcecodester Laboratory Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the System Information parameter.
nvd
CVE-2024-33305MEDIUMCVSS 6.1v1.02024-05-02
CVE-2024-33305 [MEDIUM] CWE-79 CVE-2024-33305: SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Mid SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Middle Name" parameter in Create User.
nvd
CVE-2024-33306HIGHCVSS 7.4v1.02024-05-01
CVE-2024-33306 [HIGH] CWE-79 CVE-2024-33306: SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Fir SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "First Name" parameter in Create User.
nvd
CVE-2024-33307MEDIUMCVSS 5.4v1.02024-05-01
CVE-2024-33307 [MEDIUM] CWE-79 CVE-2024-33307: SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Las SourceCodester Laboratory Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via "Last Name" parameter in Create User.
nvd