CVE-2024-30927 – DerbyNet 9.0 racer-results.php Cross Site Scripting
https://notcve.org/view.php?id=CVE-2024-30927
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the racer-results.php component. • https://chocapikk.com/posts/2024/derbynet-vulnerabilities • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-30926 – DerbyNet 9.0 inc/kisosks.inc Cross Site Scripting
https://notcve.org/view.php?id=CVE-2024-30926
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the . • https://chocapikk.com/posts/2024/derbynet-vulnerabilities • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-30925 – DerbyNet 9.0 photo-thumbs.php Cross Site Scripting
https://notcve.org/view.php?id=CVE-2024-30925
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the photo-thumbs.php component. • https://chocapikk.com/posts/2024/derbynet-vulnerabilities • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-30924 – DerbyNet 9.0 checkin.php Cross Site Scripting
https://notcve.org/view.php?id=CVE-2024-30924
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the checkin.php component. • https://chocapikk.com/posts/2024/derbynet-vulnerabilities • CWE-692: Incomplete Denylist to Cross-Site Scripting •
CVE-2024-30921 – DerbyNet 9.0 photo.php Cross Site Scripting
https://notcve.org/view.php?id=CVE-2024-30921
Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the photo.php component. • https://chocapikk.com/posts/2024/derbynet-vulnerabilities • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •