CVE-2020-36550
MEDIUMMulti Restaurant Table Reservation System 1.0 - Stored Cross-Site Scripting via Table Name Field
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-36550. PoCs published by yunaranyancat.
AI-analyzed exploit summary This exploit demonstrates multiple persistent XSS vulnerabilities in Multi Restaurant Table Reservation System 1.0. The PoC includes HTTP requests with malicious payloads injected into various fields (e.g., Restaurant Name, Table Name, Item Name) that execute JavaScript when rendered.
Description
Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Table Name field to /dashboard/table-list.php.
Exploits (1)
This exploit demonstrates multiple persistent XSS vulnerabilities in Multi Restaurant Table Reservation System 1.0. The PoC includes HTTP requests with malicious payloads injected into various fields (e.g., Restaurant Name, Table Name, Item Name) that execute JavaScript when rendered.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N