Stored XSS Vulnerability in /admin_schedule.php Allows Remote Code Execution
CVE-2024-42761
6.1MEDIUM
Key Information:
- Vendor
- CVE Published:
- 22 August 2024
What is CVE-2024-42761?
A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin_schedule.php" in Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via scheduleDurationPHP parameter.
