CVE-2024-24134

MEDIUM

Remyandrade Online Food Menu - XSS

Title source: rule
STIX 2.1

Description

Sourcecodester Online Food Menu 1.0 is vulnerable to Cross Site Scripting (XSS) via the 'Menu Name' and 'Description' fields in the Update Menu section.

Exploits (1)

nomisec WRITEUP
by BurakSevben · poc
https://github.com/BurakSevben/CVE-2024-24134

Scores

CVSS v3 4.8
EPSS 0.0115
EPSS Percentile 78.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (1)
remyandrade/online_food_menu 1.0
Published Jan 29, 2024
Tracked Since Feb 18, 2026