CVE-2024-7678
CVSS 3.1 Score 6.1 of 10 (medium)
Details
Published Aug 12, 2024
Updated: Aug 15, 2024
CWE ID 79
Summary
CVE-2024-7678 is a recently disclosed vulnerability affecting the SourceCodester Car Driving School Management System 1.0. This issue, which has been rated as problematic, lies within the /classes/Master.php?f=save_package file. The flaw allows for cross-site scripting (XSS) attacks, which can be executed remotely. The manipulation of argument names, descriptions, or training duration can trigger the vulnerability. Public disclosure of the exploit means that malicious actors may already be attempting to exploit this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share