blog.csdn.netexploit
https://blog.csdn.net/Dwayne_Wade/article/details/129524104 CVE-2023-1396
LOW
SourceCodester Online Tours & Travels Management System traveller_details.php cross site scripting
Record summary
CVE-2023-1396 has a selected CVSS score of 3.5 (low).
Description
A vulnerability was found in SourceCodester Online Tours & Travels Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file admin/traveller_details.php. The manipulation of the argument address leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-222983.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Online Tours & Travels Management SystemBrowse SourceCodester / Online Tours & Travels Management System | CVE List | 1.0 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-1396 vuldb.comsignaturepermissions required
https://vuldb.com/?ctiid.222983 vuldb.comvdb entryTechnical description
https://vuldb.com/?id.222983