CVE-2023-36317Cross-site Scripting in Student Study Center Desk Management System

Severity
4.8MEDIUMNVD
EPSS
0.1%
top 75.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 23
Latest updateAug 24

Description

Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 1.0 allows attackers to run arbitrary code via crafted GET request to web application URL.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:NExploitability: 1.7 | Impact: 2.7

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-7chm-r5mr-rv4x: Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 12023-08-24
CVEList
CVE-2023-36317: Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 12023-08-23
CVE-2023-36317 — Cross-site Scripting | cvebase