github.combroken linkexploit
https://github.com/TheCyberDiver/Public-Disclosures-CVE-/blob/main/Inventory-Management-System-XSS.md CVE-2023-4555
LOW
SourceCodester Inventory Management System suppliar_data.php cross site scripting
Record summary
CVE-2023-4555 has a selected CVSS score of 3.5 (low).
Description
A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file suppliar_data.php. The manipulation of the argument name/company leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-238153 was assigned to this vulnerability.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 18, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Inventory Management SystemBrowse SourceCodester / Inventory Management System | CVE List | 1.0 | affected |
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-4555 vuldb.comsignaturepermissions required
https://vuldb.com/?ctiid.238153 vuldb.comvdb entryTechnical description
https://vuldb.com/?id.238153