CVE-2021-41962Cross-site Scripting in Service Management System Project Vehicle Service Management System

Severity
4.8MEDIUMNVD
EPSS
0.2%
top 57.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 16
Latest updateDec 17

Description

Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 1.0 via the Owner fullname parameter in a Send Service Request in vehicle_service.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:NExploitability: 1.7 | Impact: 2.7

🔴Vulnerability Details

2
GHSA
GHSA-f66p-66fr-f5qm: Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 12021-12-17
CVEList
CVE-2021-41962: Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Vehicle Service Management System 12021-12-16
CVE-2021-41962 — Cross-site Scripting | cvebase