CVE-2024-7303
LOWOnline Blood Bank Management System 1.0 - Cross-Site Scripting via Send Blood Request Page Address Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-7303. PoCs published by cl4irv0yance.
AI-analyzed exploit summary The repository contains a detailed technical analysis of CVE-2024-7303, a stored XSS vulnerability in the Online Blood Bank Management System v1.0. It includes root cause analysis, proof-of-concept HTTP requests, and remediation guidance.
Description
A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /request.php of the component Send Blood Request Page. The manipulation of the argument Address/bloodgroup leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-273185 was assigned to this vulnerability.
Exploits (1)
The repository contains a detailed technical analysis of CVE-2024-7303, a stored XSS vulnerability in the Online Blood Bank Management System v1.0. It includes root cause analysis, proof-of-concept HTTP requests, and remediation guidance.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N