Vulnerability Description
A vulnerability has been found in code-projects Project Monitoring System 1.0. Affected is an unknown function of the file /onlineJobSearchEngine/postjob.php. Such manipulation of the argument txtapplyto leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fabian | Project Monitoring System | 1.0 |
Related Weaknesses (CWE)
References
- https://code-projects.org/Product
- https://github.com/asd1238525/cve/blob/main/xss4.mdExploitThird Party Advisory
- https://github.com/asd1238525/cve/blob/main/xss4.md#pocExploitThird Party Advisory
- https://vuldb.com/?ctiid.326205Permissions RequiredVDB Entry
- https://vuldb.com/?id.326205Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.664309Third Party AdvisoryVDB Entry
FAQ
What is CVE-2025-11124?
CVE-2025-11124 is a vulnerability with a CVSS score of 3.5 (LOW). A vulnerability has been found in code-projects Project Monitoring System 1.0. Affected is an unknown function of the file /onlineJobSearchEngine/postjob.php. Such manipulation of the argument txtappl...
How severe is CVE-2025-11124?
CVE-2025-11124 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-11124?
Check the references section above for vendor advisories and patch information. Affected products include: Fabian Project Monitoring System.