Skip to main content
leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249502 is the identifier assigned to this vulnerability.","url":"https://cvebuzz.com/cve/CVE-2024-0189","datePublished":"2024-01-02T18:15:08.037000Z","dateModified":"2026-06-17T06:52:57.803000Z","isPartOf":{"@type":"WebSite","name":"cvebuzz","url":"https://cvebuzz.com"}}

CVE detail

CVE-2024-0189

A vulnerability has been found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This vulnerability affects unknown code of the file teacher_message.php of the component Create Message Handler. The manipulation of the argument Content with the input </title><scRipt>alert(x)</scRipt> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249502 is the identifier assigned to this vulnerability.

CVSS 3.5 · Low