CVE-2024-25551

MEDIUM

Simple Student Attendance System v1.0 - XSS

Title source: llm
STIX 2.1

Description

Cross Site Scripting (XSS) vulnerability in sourcecodester Simple Student Attendance System v1.0 allows attackers to execute arbitrary code via crafted GET request to web application URL.

References (1)

Core 1

Scores

CVSS v3 6.1
EPSS 0.0009
EPSS Percentile 25.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-79
Status published
Products (1)
oretnom23/simple_student_attendance_system 1.0
Published Mar 03, 2024
Tracked Since Feb 18, 2026