Unknown · Sourcecodester Product Management System · CVE-2024-1269
**Name of the Vulnerable Software and Affected Versions**
SourceCodester Product Management System version 1.0
**Description**
A vulnerability has been found in the SourceCodester Product Management System, classified as problematic. This issue affects unknown code of the file /supplier.php. The manipulation of the `supplier name` and `supplier contact` arguments leads to cross-site scripting. The attack can be initiated remotely.
**Recommendations**
For SourceCodester Product Management System version 1.0, consider disabling the `/supplier.php` file or restricting access to it until a patch is available. Avoid using the `supplier name` and `supplier contact` arguments in the affected file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.