Cross Site Scripting Vulnerability in Code-Projects Chat System
CVE-2024-13034
5.3MEDIUM
What is CVE-2024-13034?
A cross site scripting vulnerability has been identified in Code-Projects Chat System 1.0, specifically in the /admin/update_user.php file. This flaw allows an attacker to manipulate input parameters, particularly the 'name' argument, leading to potential execution of malicious scripts in the user's browser. Notably, the attack can be initiated remotely, raising significant security concerns for users of the affected product. The disclosure of this vulnerability emphasizes the need for immediate remediation to safeguard against possible exploitation.
Affected Version(s)
Chat System 1.0