CVE-2024-27743

Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the Address parameter in the add_invoices.php component.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:mayurik:petrol_pump_management:1.0:*:*:*:*:*:*:*

History

28 Mar 2025, 14:34

Type Values Removed Values Added
CPE cpe:2.3:a:mayurik:petrol_pump_management:1.0:*:*:*:*:*:*:*
First Time Mayurik petrol Pump Management
Mayurik
References () https://github.com/shubham-s-pandey/CVE_POC/blob/main/CVE-2024-27743.md - () https://github.com/shubham-s-pandey/CVE_POC/blob/main/CVE-2024-27743.md - Exploit, Third Party Advisory

13 Mar 2024, 07:15

Type Values Removed Values Added
References
  • {'url': 'http://mayurik.com', 'name': 'http://mayurik.com', 'tags': [], 'refsource': ''}
  • {'url': 'https://www.sourcecodester.com/php/17180/petrol-pump-management-software-free-download.html', 'name': 'https://www.sourcecodester.com/php/17180/petrol-pump-management-software-free-download.html', 'tags': [], 'refsource': ''}

01 Mar 2024, 22:22

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-01 22:15

Updated : 2025-03-28 14:34


NVD link : CVE-2024-27743

Mitre link : CVE-2024-27743


JSON object : View

Products Affected

mayurik

  • petrol_pump_management
CWE

No CWE.