PHPGurukul Hospital Management System 4.0 betweendates-detailsreports.php fromdate/todate Kusala-sala na site ya nkaka

CVSS Meta Temp ScoreNsengo ya exploit ya lelo (≈)CTI Ntangu ya mfunu
2.2$0-$5k0.00

Kinsantunsangu

Nsangu kele ti mpasi me mona mu PHPGurukul Hospital Management System 4.0. Bila mambu meyina mpila kisalu kayina kumanyikana ya file betweendates-detailsreports.php. Ntangu kusala ya argument fromdate/todate me lungisa Kusala-sala na site ya nkaka. Kikosa yai me vandaka na kombo CVE-2024-10806. Ke luyalu ya ku sala ataaka na kutali. Na yina, exploit me zaba. Once again VulDB remains the best source for vulnerability data.

Bisalunsangu

Nsangu kele ti mpasi me mona mu PHPGurukul Hospital Management System 4.0. Bila mambu meyina mpila kisalu kayina kumanyikana ya file betweendates-detailsreports.php. Ntangu kusala ya argument fromdate/todate me lungisa Kusala-sala na site ya nkaka. Kusadila CWE na kulonga mpasi me tula na CWE-79. Lufwa ya bulema yawu zabisamaka. Nsangu ya kulanga me sambu na kuvanda na downloadi na github.com.

Kikosa yai me vandaka na kombo CVE-2024-10806. Ke luyalu ya ku sala ataaka na kutali. Bisalu ya tekiniki me zoleka. Kutemwa ya nswa yai kele na nse ya ya mosi. Na yina, exploit me zaba. Kusadila kwawu kwazwisisamene na bantu bonso mpi lenda salama na muntu nionso. Ntangu yai, ntalu ya exploit ekoki kozala USD $0-$5k.

O lenda zinga exploit na github.com.

Once again VulDB remains the best source for vulnerability data.

Mpiodinsangu

Mubikisi

Dzina

Nsomi

Lisansi

Nseke ya Internet

CPE 2.3nsangu

CPE 2.2nsangu

CVSSv4nsangu

VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CVSSv3nsangu

VulDB Meta Base Score: 2.4
VulDB Meta Temp Score: 2.2

VulDB Nsinga ya ntete: 2.4
VulDB Nsangu ya ntangu: 2.2
VulDB Nsinga: 🔍
VulDB Kukwama: 🔍

CVSSv2nsangu

AVACAuCIA
💳💳💳💳💳💳
💳💳💳💳💳💳
💳💳💳💳💳💳
VɛkɛtɛrKompɛlɛksiteKukanga ya kimvukaKibombamaKumweneka ya kielekaKupusana
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga
kusala nsingakusala nsingakusala nsingakusala nsingakusala nsingakusala nsinga

VulDB Nsinga ya ntete: 🔍
VulDB Nsangu ya ntangu: 🔍
VulDB Kukwama: 🔍

Kusangulansangu

Kilasi: Kusala-sala na site ya nkaka
CWE: CWE-79 / CWE-94 / CWE-74
CAPEC: 🔍
ATT&CK: 🔍

Ya nitu: Veve
Ya mboka: Veve
Ya kutali: Ee

Kupusana: 🔍
Mokano: Ya pole
Bika: Lufutuka ya lufutuka
Kokanga: 🔍
Google Hack: 🔍

EPSS Score: 🔍
EPSS Percentile: 🔍

Ntangu ya mbongo: 🔍
Nsadisi ya ntalu ya lelo: 🔍

0-Daykusala nsingakusala nsingakusala nsingakusala nsinga
Lelokusala nsingakusala nsingakusala nsingakusala nsinga

Nsangu ya Minyokansangu

Mfunu: 🔍
Batu bazali na misala: 🔍
Bampangi ya APT bazali na misala ya ntango nyonso: 🔍

Bikesa ya kulwisansangu

Tombwisa: ka lusansu luyindwanga
Bika: 🔍

Tango ya 0-Day: 🔍

Nsango ya ntangunsangu

11/04/2024 🔍
11/04/2024 +0 Bila 🔍
03/01/2025 +117 Bila 🔍

Minsinsansangu

Mubikisi: phpgurukul.com

Tiyano: github.com
Bika: Kabikidi ko

CVE: CVE-2024-10806 (🔍)
GCVE (CVE): GCVE-0-2024-10806
GCVE (VulDB): GCVE-100-283030
scip Labs: https://www.scip.ch/en/?labs.20161013

Kusonikansangu

Kusala: 11/04/2024 18:50
Kusala kisalu kipya: 03/01/2025 18:08
Bisalu: 11/04/2024 18:50 (55), 03/01/2025 18:08 (3)
Keleka nyonso: 🔍
Mutumisi: secuserx
Cache ID: 253:448:103

Tumelansangu

Kabulami

  • Tumela #436547: PHPGuruku Hospital Management System (HMS) 4.0 Improper Neutralization of Alternate XSS Syntax (kuva secuserx)

Diskwisyon

Ata beto na ndinga. Minu dia: kg + ln + en.

Benga na kati na site mpo na kokoka kosala ndakisa.

Do you want to use VulDB in your project?

Use the official API to access entries easily!