A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.'
Metrics
Affected Vendors & Products
References
History
Fri, 06 Sep 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 06 Sep 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' NOTE: The vendor states that the RTSP library is used for DEMO only, using it in product is a customer's behavior. Ambarella has emphasized that RTSP is DEMO only library, should NOT be used in product in our document. Because Ambarella's SDK is proprietary, we didn't publish our SDK source code in public network. | A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' |
Thu, 05 Sep 2024 19:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' | A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'Brand Name.' NOTE: The vendor states that the RTSP library is used for DEMO only, using it in product is a customer's behavior. Ambarella has emphasized that RTSP is DEMO only library, should NOT be used in product in our document. Because Ambarella's SDK is proprietary, we didn't publish our SDK source code in public network. |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-09-09T14:05:43
Updated: 2024-09-09T14:48:44.377Z
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-24198
Vulnrichment
Updated: 2024-08-04T15:05:11.908Z
NVD
Status : Modified
Published: 2020-09-09T15:15:10.660
Modified: 2024-11-21T05:14:29.310
Link: CVE-2020-24198
Redhat
No data.