CVE-2024-34240: Qdocs Smart School

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

QDOCS Smart School 7.0.0 is vulnerable to Cross Site Scripting (XSS) resulting in arbitrary code execution in admin functions related to adding or updating records.

Affected products

  • Qdocs Smart School: version 7.0.0 only

Published 2024-05-21. Last modified 2026-06-17.