Cross-Site Scripting Vulnerability in Code-Projects Chat System
CVE-2024-13033
5.3MEDIUM
What is CVE-2024-13033?
A cross-site scripting vulnerability exists in the chatroom.php component of the code-projects Chat System, specifically when handling the 'id' argument in admin chat room management functionalities. This security flaw can be exploited remotely, allowing attackers to execute malicious scripts in the context of a user's session. As the vulnerability has been disclosed, affected versions could be liable to real-world attacks, compromising the integrity and safety of user interactions within the chat system.
Affected Version(s)
Chat System 1.0