CVE-2024-0189
02.01.2024, 18:15
A vulnerability has been found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This vulnerability affects unknown code of the file teacher_message.php of the component Create Message Handler. The manipulation of the argument Content with the input </title><scRipt>alert(x)</scRipt> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249502 is the identifier assigned to this vulnerability.
Vendor | Product | Version |
---|---|---|
nia | rrj_nueva_ecija_engineer_online_portal | 1.0 |
𝑥
= Vulnerable software versions