Stored Cross-Site Scripting Vulnerability in Volmarg Personal Management System
CVE-2024-53568

5.4MEDIUM

Key Information:

Vendor

Volmarg

Vendor
CVE Published:
22 April 2025

What is CVE-2024-53568?

The Volmarg Personal Management System v1.4.65 has a stored cross-site scripting vulnerability in its Image Upload feature. This flaw allows authenticated users to inject malicious scripts through the tag parameter, potentially leading to unauthorized actions or data exposure. Web developers and administrators must ensure they validate and sanitize user inputs to prevent exploitation of this vulnerability.

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.