PoC Index

CVE-2024-53481

MEDIUM 6.1EPSS 0.5%

A Cross Site Scripting (XSS) vulnerability in the profile.php of PHPGurukul Beauty Parlour Management System v1.1 allows remote attackers to execute arbitrary code by injecting arbitrary HTML into the "Firstname" and "Last name" parameters.

CVSS v3.1
6.1 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS
0.48% chance of exploitation in the next 30 days, 40th percentile
Published
2024-12-10
Updated
2026-07-05

Proof-of-concept exploits (1)

References

Related