CVE-2024-0189: Nia Rrj Nueva Ecija Engineer Online Portal

Medium severity, CVSS 5.4. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability has been found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This vulnerability affects unknown code of the file teacher_message.php of the component Create Message Handler. The manipulation of the argument Content with the input </title><scRipt>alert(x)</scRipt> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249502 is the identifier assigned to this vulnerability.

Affected products

  • Nia Rrj Nueva Ecija Engineer Online Portal: version 1.0 only

Published 2024-01-02. Last modified 2026-06-17.