Vulnerability Description
A vulnerability was found in SourceCodester Modern Loan Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file update_loan_record.php. The manipulation of the argument amount leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mayurik | Modern Loan Management System | 1.0 |
Related Weaknesses (CWE)
References
- https://vuldb.com/?ctiid.278267Permissions RequiredThird Party AdvisoryVDB Entry
- https://vuldb.com/?id.278267Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.411877Third Party AdvisoryVDB Entry
- https://www.shawroot.cc/2807.htmlExploitThird Party Advisory
- https://www.sourcecodester.com/Product
FAQ
What is CVE-2024-9089?
CVE-2024-9089 is a vulnerability with a CVSS score of 3.5 (LOW). A vulnerability was found in SourceCodester Modern Loan Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file update_loan_record.php. The manipula...
How severe is CVE-2024-9089?
CVE-2024-9089 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-9089?
Check the references section above for vendor advisories and patch information. Affected products include: Mayurik Modern Loan Management System.