CVE-2024-46238

Severity
5.9MEDIUM
EPSS
0.1%
top 67.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 21

Description

Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter in /admin/add-doctor.php and /admin/edit-doctor.php

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:LExploitability: 1.7 | Impact: 3.7

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-23wv-w3v2-hcrj: Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 42024-10-21
CVEList
CVE-2024-46238: Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 42024-10-21
CVE-2024-46238 (MEDIUM CVSS 5.9) | Multiple Cross Site Scripting (XSS) | cvebase.io