CVE-2024-4515

CVSS 2.0 Score 4.0 of 10 (medium)

Details

Published May 6, 2024
Updated: Jun 4, 2024
CWE ID 79

Summary

CVE-2024-4515 is a newly disclosed vulnerability affecting the Campcodes Complete Web-Based School Management System 1.0. This issue lies in an unidentified functionality of the file /view/timetable_grade_wise.php. An attacker can exploit this cross-site scripting (XSS) vulnerability by manipulating the grade argument, allowing them to inject malicious code into a user's browser. The exploit can be launched remotely, increasing the risk for widespread attacks. Public disclosure of the vulnerability means that it is currently being actively exploited. The associated identifier for this vulnerability is VDB-263119.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share