vulnerability discovered in SourceCodester's Online Graduate Tracer System, could lead to information disclosure
CVE-2024-7843
7.5HIGH
Summary
A vulnerability exists within an unspecified function located in the file /tracking/admin/exportcs.php of the SourceCodester Online Graduate Tracer System version 1.0. This security flaw allows for the potential remote manipulation and unauthorized disclosure of sensitive information. With the public disclosure of this vulnerability, attackers may exploit it to expose confidential data, putting users and systems at risk. Immediate action is crucial to safeguard against potential exploitation.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Collectors
NVD Database