CVE-2022-36251 β€” Cross-site Scripting in Clinic S Patient Management System

Severity
6.1MEDIUMNVD
EPSS
0.2%
top 51.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 22
Latest updateAug 23

Description

Clinic's Patient Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via patients.php.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

πŸ”΄Vulnerability Details

2
GHSA
GHSA-2vvp-3qrq-jvpm: Clinic's Patient Management System v1β†—2022-08-23
β–Ά
CVEList
CVE-2022-36251: Clinic's Patient Management System v1β†—2022-08-22
β–Ά
CVE-2022-36251 β€” Cross-site Scripting | cvebase