CVE-2022-40470
MEDIUMPhpgurukul Blood Donor Management System 1.0 - Cross-Site Scripting via Add Blood Group Name Feature
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-40470. PoCs published by RashidKhanPathan.
AI-analyzed exploit summary This repository contains a writeup for CVE-2022-40470, detailing a Cross-Site Scripting (XSS) vulnerability in Phpgurukul Blood Donor Management System 1.0. The vulnerability allows an attacker to inject arbitrary code via the 'Add Blood Group Name' feature, which executes when navigating to the 'Manage Blood Group' section.
Description
Phpgurukul Blood Donor Management System 1.0 allows Cross Site Scripting via Add Blood Group Name Feature.
Exploits (1)
This repository contains a writeup for CVE-2022-40470, detailing a Cross-Site Scripting (XSS) vulnerability in Phpgurukul Blood Donor Management System 1.0. The vulnerability allows an attacker to inject arbitrary code via the 'Add Blood Group Name' feature, which executes when navigating to the 'Manage Blood Group' section.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N