• caglararli@hotmail.com
  • 05386281520

CVE-2024-1026 | eReserv 7.7.58 front/admin/config.php id cross site scripting

Çağlar Arlı      -    15 Views

CVE-2024-1026 | eReserv 7.7.58 front/admin/config.php id cross site scripting

A vulnerability was found in eReserv 7.7.58 and classified as problematic. This issue affects some unknown processing of the file front/admin/config.php. The manipulation of the argument id with the input %22%3E%3Cscript%3Ealert(%27XSS%27)%3C/script%3E leads to cross site scripting. The identification of this vulnerability is CVE-2024-1026. The attack may be initiated remotely. Furthermore, there is an exploit available.