Security Advisory

CVE-2024-40478

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-08-09 00:00:00
Last updated 2025-03-13 15:37:59
Assigner mitre
State PUBLISHED

Description

A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/afeedback.php" in Kashipara Online Exam System v1.0, which allows remote attackers to execute arbitrary code via "rname" and "email" parameter fields