A vulnerability classified as problematic has been found...
Moderate severity
Unreviewed
Published
Nov 30, 2024
to the GitHub Advisory Database
•
Updated Nov 30, 2024
Description
Published by the National Vulnerability Database
Nov 30, 2024
Published to the GitHub Advisory Database
Nov 30, 2024
Last updated
Nov 30, 2024
A vulnerability classified as problematic has been found in code-projects Wazifa System 1.0. Affected is an unknown function of the file /controllers/updatesettings.php of the component Setting Handler. The manipulation of the argument firstname leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
References