CVE-2024-57522

SourceCodester Packers and Movers Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in Users.php. An attacker can inject a malicious script into the username or name field during user creation.
References
Link Resource
https://github.com/HackWidMaddy/CVE-2024-57522 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:oretnom23:packers_and_movers_management_system:1.0:*:*:*:*:*:*:*

History

22 Apr 2025, 20:08

Type Values Removed Values Added
Summary
  • (es) SourceCodester Packers and Movers Management System v1.0 es vulnerable a Cross Site Scripting (XSS) en Users.php. Un atacante puede inyectar un script malicioso en el campo de nombre de usuario durante la creación del usuario.
First Time Oretnom23
Oretnom23 packers And Movers Management System
CPE cpe:2.3:a:oretnom23:packers_and_movers_management_system:1.0:*:*:*:*:*:*:*
References () https://github.com/HackWidMaddy/CVE-2024-57522 - () https://github.com/HackWidMaddy/CVE-2024-57522 - Exploit, Third Party Advisory

03 Feb 2025, 19:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.4
CWE CWE-79

03 Feb 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-03 13:15

Updated : 2025-04-22 20:08


NVD link : CVE-2024-57522

Mitre link : CVE-2024-57522

CVE.ORG link : CVE-2024-57522


JSON object : View

Products Affected

oretnom23

  • packers_and_movers_management_system
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')