CVE-2024-8473
05.09.2024, 13:15
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an authenticated user throughuser_email parameter in /jobportal/admin/login.php.
Vendor | Product | Version |
---|---|---|
phpgurukul | job_portal | 1.0 |
𝑥
= Vulnerable software versions