CVE Database
/

CVE-2024-47095

Back to search

CVE-2024-47095

Published: Oct 8, 2024

Modified: Oct 8, 2024

PUBLISHED

Description

Cross Site Scripting vulnerability in Follet School Solutions Destiny before v22.0.1 AU1 allows a remote attacker to run arbitrary client-side code via the expiredSupportMessage parameter of handleloginform.do.

VendorProductVersions

Follet School Solutions

Destiny

affected
0 - < 22.0.1 AU1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now