CVE-2024-51224
EUVD-2024-5548823.03.2026, 16:16
Multiple cross-site scripting (XSS) vulnerabilities in the component /admin/edit-vehicle.php of Phpgurukul Vehicle Record Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the vehiclename, modelnumber, regnumber, vehiclesubtype, chasisnum and enginenumber parameters.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| phpgurukul | vehicle_record_management_system | 1.0 |
𝑥
= Vulnerable software versions