Cross Site Scripting Vulnerability in Online Graduate Tracer System
CVE-2024-7844
What is CVE-2024-7844?
A vulnerability has been identified in SourceCodester Online Graduate Tracer System version 1.0, specifically within the file /tracking/admin/add_acc.php. This issue stems from inadequate validation and insufficient sanitization of input parameters, allowing attackers to manipulate the arguments for name, user, or position. Such manipulation can lead to cross-site scripting (XSS) attacks, enabling external entities to execute malicious scripts within the context of the user's session. The vulnerability can be exploited remotely, and has been publicly disclosed, potentially impacting the security of the application's users.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Timeline
Vulnerability published
