CVE-2023-6945

Severity
4.8MEDIUM
EPSS
0.1%
top 80.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 19

Description

A vulnerability has been found in SourceCodester Online Student Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file edit-student-detail.php. The manipulation of the argument notmsg leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-248377 was assigned to this vulnerability.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:L/A:NExploitability: 0.9 | Impact: 1.4

🔴Vulnerability Details

2
GHSA
GHSA-gmvv-r8vc-f93q: A vulnerability has been found in SourceCodester Online Student Management System 12023-12-19
CVEList
SourceCodester Online Student Management System edit-student-detail.php cross site scripting2023-12-19
CVE-2023-6945 (MEDIUM CVSS 4.8) | A vulnerability has been found in S | cvebase.io