CVE-2024-12955

Severity CVSS v4.0:
MEDIUM
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
26/12/2024
Last modified:
03/04/2025

Description

A vulnerability has been found in PHPGurukul Blood Bank & Donor Management System 2.4 and classified as problematic. This vulnerability affects unknown code of the file /logout.php. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:phpgurukul:blood_bank_\&_donor_management_system:2.4:*:*:*:*:*:*:*