A vulnerability has been found in code-projects Project Monitoring System 1.0. Affected is an unknown function of the file /onlineJobSearchEngine/postjob.php. Such manipulation of the argument txtapplyto leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
History

Fri, 03 Oct 2025 14:00:00 +0000

Type Values Removed Values Added
First Time appeared Fabianros
Fabianros project Monitoring System
CPEs cpe:2.3:a:fabianros:project_monitoring_system:1.0:*:*:*:*:*:*:*
Vendors & Products Fabianros
Fabianros project Monitoring System

Mon, 29 Sep 2025 12:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 29 Sep 2025 09:45:00 +0000

Type Values Removed Values Added
First Time appeared Code-projects
Code-projects project Monitoring System
Vendors & Products Code-projects
Code-projects project Monitoring System

Sun, 28 Sep 2025 23:15:00 +0000

Type Values Removed Values Added
Description A vulnerability has been found in code-projects Project Monitoring System 1.0. Affected is an unknown function of the file /onlineJobSearchEngine/postjob.php. Such manipulation of the argument txtapplyto leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.
Title code-projects Project Monitoring System postjob.php cross site scripting
Weaknesses CWE-79
CWE-94
References
Metrics cvssV2_0

{'score': 4, 'vector': 'AV:N/AC:L/Au:S/C:N/I:P/A:N/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 3.5, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:P'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2025-09-28T23:02:05.673Z

Updated: 2025-09-29T12:04:30.207Z

Reserved: 2025-09-27T17:53:19.699Z

Link: CVE-2025-11124

cve-icon Vulnrichment

Updated: 2025-09-29T12:04:24.860Z

cve-icon NVD

Status : Analyzed

Published: 2025-09-28T23:15:29.470

Modified: 2025-10-03T13:48:38.657

Link: CVE-2025-11124

cve-icon Redhat

No data.