Overview
- Description
- A vulnerability classified as problematic has been found in romadebrian WEB-Sekolah 1.0. Affected is an unknown function of the file /Admin/akun_edit.php of the component Backend. The manipulation of the argument kode leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
- Source
- cna@vuldb.com
- NVD status
- Analyzed
Risk scores
CVSS 4.0
- Type
- Secondary
- Base score
- 5.1
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- MEDIUM
CVSS 3.1
- Type
- Primary
- Base score
- 4.8
- Impact score
- 2.7
- Exploitability score
- 1.7
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Secondary
- Base score
- 3.3
- Impact score
- 2.9
- Exploitability score
- 6.4
- Vector string
- AV:N/AC:L/Au:M/C:N/I:P/A:N
Social media
- Hype score
- Not currently trending
🚨 CVE-2024-10840 (Published: 2024-11-05) affects Romadebrian Nan. This high-severity vulnerability impacts specific versions. Users are urged to update to the latest release and review the remediation steps outlined here: [GitHub Link](https://t.co/GE4HK9Y2Fe) 🔒 #CyberSecurity…
@transilienceai
9 Nov 2024
1 Impression
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2024-10840 (Published: 2024-11-05) - A high-severity vulnerability in Romadebrian nan affects multiple versions. Users are urged to update to the latest version immediately to mitigate risks. For detailed remediation steps, check the link: https://t.co/GE4HK9Y2Fe… https://
@transilienceai
9 Nov 2024
0 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-10840 A vulnerability classified as problematic has been found in romadebrian WEB-Sekolah 1.0. Affected is an unknown function of the file /Admin/akun_edit.php of the compo… https://t.co/e2zNgEnvPV
@CVEnew
5 Nov 2024
415 Impressions
2 Retweets
2 Likes
1 Bookmark
0 Replies
0 Quotes
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:romadebrian:web-sekolah:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4AB95C15-C1D8-47EC-96B6-D38DD31920B3" } ], "operator": "OR" } ] } ]