NA

CVE-2024-30924

Published: 18/04/2024 Updated: 19/04/2024

Vulnerability Summary

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows malicious users to execute arbitrary code via the checkin.php component.

Exploits

DerbyNet version 90 suffers from a cross site scripting vulnerability in checkinphp ...

Mailing Lists

CVE ID: CVE-2024-30924 Description: A Cross Site Scripting (XSS) vulnerability has been identified in DerbyNet version 90, specifically within the `checkinphp` component This vulnerability allows remote attackers to execute arbitrary code due to improper handling of the `order` URL parameter The flaw lies in the way the `order` parameter is ...