CVE-2024-4723 – Campcodes Legal Case Management System case-status cross site scripting
https://notcve.org/view.php?id=CVE-2024-4723
A vulnerability, which was classified as problematic, has been found in Campcodes Legal Case Management System 1.0. This issue affects some unknown processing of the file /admin/case-status. The manipulation of the argument case_status leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. • https://github.com/yylmm/CVE/blob/main/Legal%20Case%20Management%20System/xss_admin_case-status.md https://vuldb.com/?ctiid.263801 https://vuldb.com/?id.263801 https://vuldb.com/?submit.331982 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-4722 – Campcodes Complete Web-Based School Management System index.php cross site scripting
https://notcve.org/view.php?id=CVE-2024-4722
A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument category leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. • https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2045.pdf https://vuldb.com/?ctiid.263800 https://vuldb.com/?id.263800 https://vuldb.com/?submit.331888 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-4721 – Campcodes Complete Web-Based School Management System add_student_subject.php cross site scripting
https://notcve.org/view.php?id=CVE-2024-4721
A vulnerability classified as problematic has been found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /model/add_student_subject.php. The manipulation of the argument index leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. • https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2044.pdf https://vuldb.com/?ctiid.263799 https://vuldb.com/?id.263799 https://vuldb.com/?submit.331887 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-4720 – Campcodes Complete Web-Based School Management System approve_petty_cash.php cross site scripting
https://notcve.org/view.php?id=CVE-2024-4720
A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /model/approve_petty_cash.php. The manipulation of the argument admin_index leads to cross site scripting. The attack may be launched remotely. • https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2043.pdf https://vuldb.com/?ctiid.263798 https://vuldb.com/?id.263798 https://vuldb.com/?submit.331886 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-4719 – Campcodes Complete Web-Based School Management System delete_record.php cross site scripting
https://notcve.org/view.php?id=CVE-2024-4719
A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /model/delete_record.php. The manipulation of the argument page leads to cross site scripting. The attack can be launched remotely. • https://github.com/E1CHO/cve_hub/blob/main/Complete%20Web-Based%20School%20Management%20System%20-%20xss/Complete%20Web-Based%20School%20Management%20System%20-%20vuln%2042.pdf https://vuldb.com/?ctiid.263797 https://vuldb.com/?id.263797 https://vuldb.com/?submit.331885 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •