CVE-2024-4688
CVSS 2.0 Score 4.0 of 10 (medium)
Details
Summary
CVE-2024-4688 is a recently disclosed vulnerability affecting the Campcodes Complete Web-Based School Management System version 1.0. The issue lies in an unknown functionality of the file /view/conversation_history_admin.php, which is susceptible to cross-site scripting (XSS) attacks. Manipulation of the argument conversation_id can lead to the injection of malicious scripts. Since this vulnerability has been made public, attacks can be launched remotely, posing a significant risk to affected systems. The Vulnerability Database has assigned the identifier VDB-263629 to this issue.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.