A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.'
History

Fri, 06 Sep 2024 15:45:00 +0000


Fri, 06 Sep 2024 15:15:00 +0000

Type Values Removed Values Added
Description A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' NOTE: The vendor states that the RTSP library is used for DEMO only, using it in product is a customer's behavior. Ambarella has emphasized that RTSP is DEMO only library, should NOT be used in product in our document. Because Ambarella's SDK is proprietary, we didn't publish our SDK source code in public network. A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.'

Thu, 05 Sep 2024 19:00:00 +0000

Type Values Removed Values Added
Description A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' NOTE: The vendor states that the RTSP library is used for DEMO only, using it in product is a customer's behavior. Ambarella has emphasized that RTSP is DEMO only library, should NOT be used in product in our document. Because Ambarella's SDK is proprietary, we didn't publish our SDK source code in public network.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-09-09T14:05:43

Updated: 2024-09-09T14:48:44.377Z

Reserved: 2020-08-13T00:00:00

Link: CVE-2020-24198

cve-icon Vulnrichment

Updated: 2024-08-04T15:05:11.908Z

cve-icon NVD

Status : Modified

Published: 2020-09-09T15:15:10.660

Modified: 2024-09-06T15:15:12.180

Link: CVE-2020-24198

cve-icon Redhat

No data.