CVE-2024-3357
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Summary
CVE-2024-3357 is a newly disclosed vulnerability affecting the SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This issue lies in an unspecified portion of the admin/mod_reports/index.php file and is caused by the improper handling of user input in the end argument. An attacker can exploit this vulnerability through cross-site scripting, enabling them to inject malicious code into a user's web browser. The exploit can be executed remotely, and the vulnerability has been made public, increasing the risk of attacks. VDB-259461 is the identifier assigned to this security concern.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.