CVE-2024-3086

A vulnerability classified as problematic was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected by this vulnerability is an unknown functionality of the file ambulance-tracking.php of the component Ambulance Tracking Page. The manipulation of the argument searchdata leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-258679.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:phpgurukul:emergency_ambulance_hiring_portal:1.0:*:*:*:*:*:*:*

History

14 Feb 2025, 19:31

Type Values Removed Values Added
CPE cpe:2.3:a:phpgurukul:emergency_ambulance_hiring_portal:1.0:*:*:*:*:*:*:*
References () https://github.com/dhabaleshwar/Open-Source-Vulnerabilities/blob/main/eahp_rxss.md - () https://github.com/dhabaleshwar/Open-Source-Vulnerabilities/blob/main/eahp_rxss.md - Exploit
References () https://vuldb.com/?ctiid.258679 - () https://vuldb.com/?ctiid.258679 - Permissions Required, VDB Entry
References () https://vuldb.com/?id.258679 - () https://vuldb.com/?id.258679 - Permissions Required, VDB Entry
References () https://vuldb.com/?submit.306960 - () https://vuldb.com/?submit.306960 - Third Party Advisory, VDB Entry
First Time Phpgurukul
Phpgurukul emergency Ambulance Hiring Portal

21 Nov 2024, 09:28

Type Values Removed Values Added
References () https://github.com/dhabaleshwar/Open-Source-Vulnerabilities/blob/main/eahp_rxss.md - () https://github.com/dhabaleshwar/Open-Source-Vulnerabilities/blob/main/eahp_rxss.md -
References () https://vuldb.com/?ctiid.258679 - () https://vuldb.com/?ctiid.258679 -
References () https://vuldb.com/?id.258679 - () https://vuldb.com/?id.258679 -
References () https://vuldb.com/?submit.306960 - () https://vuldb.com/?submit.306960 -

11 Apr 2024, 01:25

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en PHPGurukul Emergency Ambulance Hiring Portal 1.0 y se ha clasificado como problemática. Una función desconocida del archivo ambulance-tracking.php del componente Ambulance Tracking Page es afectada por esta vulnerabilidad. La manipulación del argumento searchdata conduce a cross-site scripting. El ataque se puede lanzar de forma remota. El exploit ha sido divulgado al público y puede utilizarse. El identificador asociado de esta vulnerabilidad es VDB-258679.

30 Mar 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-30 09:15

Updated : 2025-02-14 19:31


NVD link : CVE-2024-3086

Mitre link : CVE-2024-3086

CVE.ORG link : CVE-2024-3086


JSON object : View

Products Affected

phpgurukul

  • emergency_ambulance_hiring_portal
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')