Unknown · Code-Projects Blood Bank System · CVE-2024-8174
Name of the Vulnerable Software and Affected Versions:
code-projects Blood Bank System version 1.0
Description:
A vulnerability has been found in the code-projects Blood Bank System, affecting an unknown functionality of the file /login.php of the component Login Page. The manipulation of the `user` argument leads to cross-site scripting. The attack can be launched remotely.
Recommendations:
For code-projects Blood Bank System version 1.0, consider disabling the `/login.php` file or restricting access to it until a patch is available. Avoid using the `user` argument in the affected Login Page until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.