CVE-2023-23161
MEDIUM NUCLEIArt Gallery Management System Project 1.0 - Reflected Cross-Site Scripting via artname Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-23161. PoCs published by Rahul Patwari. A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in Art Gallery Management System Project v1.0 by injecting a malicious payload into the 'artname' parameter, triggering an alert with the document domain.
Description
A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the navigation bar.
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability in Art Gallery Management System Project v1.0 by injecting a malicious payload into the 'artname' parameter, triggering an alert with the document domain.
Nuclei Templates (1)
title="Art Gallery Management System" || title="art gallery management system"
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N