The PHPGurukul Online Shopping Portal Project version 2.0 contains a vulnerability that allows Cross-Site Request Forgery (CSRF) to lead to Stored Cross-Site Scripting (XSS). An attacker can exploit this vulnerability to execute arbitrary JavaScript code in the context of a user's session, potentially leading to account takeover.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-07-18 20:15
Updated : 2024-07-19 13:01
NVD link : CVE-2024-39090
Mitre link : CVE-2024-39090
CVE.ORG link : CVE-2024-39090
JSON object : View
Products Affected
No product.
CWE
No CWE.
