CVE-2022-4738Cross-site Scripting in Blood Bank Management System

Severity
6.1MEDIUMNVD
CNA4.3
EPSS
0.3%
top 43.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 25

Description

A vulnerability classified as problematic has been found in SourceCodester Blood Bank Management System 1.0. Affected is an unknown function of the file index.php?page=users of the component User Registration Handler. The manipulation of the argument Name leads to cross site scripting. It is possible to launch the attack remotely. VDB-216774 is the identifier assigned to this vulnerability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

🔴Vulnerability Details

2
GHSA
GHSA-83rq-q2r9-45f7: A vulnerability classified as problematic has been found in SourceCodester Blood Bank Management System 12022-12-25
CVEList
SourceCodester Blood Bank Management System User Registration cross site scripting2022-12-25
CVE-2022-4738 — Cross-site Scripting | cvebase