Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 06 May 2025 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lopalopa
Lopalopa e-learning Management System |
|
| CPEs | cpe:2.3:a:lopalopa:e-learning_management_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Lopalopa
Lopalopa e-learning Management System |
Thu, 14 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kashipara
Kashipara e Learning Management System Project |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:kashipara:e_learning_management_system_project:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Kashipara
Kashipara e Learning Management System Project |
|
| Metrics |
cvssV3_1
|
Thu, 14 Nov 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Stored Cross-Site Scripting (XSS) vulnerability was found in /lms/admin/school_year.php of KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the school_year parameter in a POST HTTP request. | A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/school_year.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the school_year parameter. |
Thu, 14 Nov 2024 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Stored Cross-Site Scripting (XSS) vulnerability was found in /lms/admin/school_year.php of KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the school_year parameter in a POST HTTP request. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-14T18:37:28.976Z
Reserved: 2024-10-28T00:00:00.000Z
Link: CVE-2024-50842
Updated: 2024-11-14T18:37:08.424Z
Status : Analyzed
Published: 2024-11-14T14:15:18.967
Modified: 2025-05-06T13:41:46.400
Link: CVE-2024-50842
No data.
OpenCVE Enrichment
No data.