Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48669 | A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/admin-update-employee.php of the component Update Employee Page. The manipulation of the argument emp_fname /emp_lname /emp_nat_idno/emp_addr leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. |
Mon, 19 Aug 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Online Railway Reservation System Project
Online Railway Reservation System Project online Railway Reservation System |
|
| CPEs | cpe:2.3:a:online_railway_reservation_system_project:online_railway_reservation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Online Railway Reservation System Project
Online Railway Reservation System Project online Railway Reservation System |
Thu, 15 Aug 2024 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codeastro
Codeastro online Railway Reservation System |
|
| CPEs | cpe:2.3:a:codeastro:online_railway_reservation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Codeastro
Codeastro online Railway Reservation System |
|
| Metrics |
ssvc
|
Thu, 15 Aug 2024 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/admin-update-employee.php of the component Update Employee Page. The manipulation of the argument emp_fname /emp_lname /emp_nat_idno/emp_addr leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | CodeAstro Online Railway Reservation System Update Employee Page admin-update-employee.php cross site scripting | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2024-08-15T13:10:50.535Z
Reserved: 2024-08-14T18:37:59.809Z
Link: CVE-2024-7815
Updated: 2024-08-15T13:10:24.367Z
Status : Analyzed
Published: 2024-08-15T04:15:09.510
Modified: 2024-08-19T18:32:00.617
Link: CVE-2024-7815
No data.
OpenCVE Enrichment
No data.
EUVD