github.comexploit
https://github.com/tht1997/CVE_2023/blob/main/Lost%20and%20Found%20Information%20System/CVE-2023-2667.md CVE-2023-2667
LOW
SourceCodester Lost and Found Information System cross site scripting
Record summary
CVE-2023-2667 has a selected CVSS score of 3.5 (low).
Description
A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/. The manipulation of the argument page leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-228883.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 12, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Lost and Found Information SystemBrowse SourceCodester / Lost and Found Information System | CVE List | 1.0 | affected |
lost_and_found_information_systemBrowse lost_and_found_information_system_project / lost_and_found_information_systemDefault status: unknown | CVE List | 1.0 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-2667 vuldb.comsignature
https://vuldb.com/?ctiid.228883 vuldb.comvdb entryTechnical description
https://vuldb.com/?id.228883