Multiple stored cross-site scripting (XSS) vulnerabilities in the component /admin/card-bwdates-report.php of PHPGURUKUL Medical Card Generation System using PHP and MySQL v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the fromdate and todate parameters.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 29 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Wed, 28 May 2025 02:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Anujk305 Anujk305 medical Card Generation System | |
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:anujk305:medical_card_generation_system:1.0:*:*:*:*:*:*:* | |
| Vendors & Products | Anujk305 Anujk305 medical Card Generation System | |
| Metrics | cvssV3_1 
 | 
Fri, 23 May 2025 15:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Multiple stored cross-site scripting (XSS) vulnerabilities in the component /admin/card-bwdates-report.php of PHPGURUKUL Medical Card Generation System using PHP and MySQL v1.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the fromdate and todate parameters. | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mitre
Published: 2025-05-23T00:00:00.000Z
Updated: 2025-05-29T15:17:21.136Z
Reserved: 2024-10-28T00:00:00.000Z
Link: CVE-2024-51108
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-05-29T15:06:34.343Z
 NVD
                        NVD
                    Status : Modified
Published: 2025-05-23T15:15:23.440
Modified: 2025-05-29T16:15:39.603
Link: CVE-2024-51108
 Redhat
                        Redhat
                    No data.
 ReportizFlow
ReportizFlow