CVE-2022-3580

Severity
6.1MEDIUM
EPSS
0.4%
top 41.18%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 18

Description

A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier Queuing System 1.0.1. This issue affects some unknown processing of the component User Creation Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-211187.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:NExploitability: 0.9 | Impact: 1.4

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-v3v3-pwm3-3xx8: A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier Queuing System 12022-10-18
CVEList
SourceCodester Cashier Queuing System User Creation cross site scripting2022-10-18

📋Vendor Advisories

1
CISA
Cisco ASA and FTD Cross-Site Scripting (XSS) Vulnerability2021-11-03
CVE-2022-3580 (MEDIUM CVSS 6.1) | A vulnerability | cvebase.io