← back
CVE-2024-3091

PHPGurukul Emergency Ambulance Hiring Portal Search Request Page search.php cross site scripting

CVSS 2.4 LOWEPSS 0.5%CWE-79
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 2.4EPSS 0.5%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
30 Mar 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/search.php of the component Search Request Page. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-258684.
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:N

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →