CVE-2023-49540
CVSS Score
6.1
EPSS Score
0.0%
EPSS Percentile
0th
Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/history. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the history parameter.
| Vendor | n/a |
| Product | n/a |
| Published | Mar 1, 2024 |
| Last Updated | Aug 6, 2024 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new medium vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
owasp.org: https://owasp.org/www-community/attacks/xss/ sourcecodester.com: https://www.sourcecodester.com/php/15748/book-store-management-system-project-using-php-codeigniter-3-free-source-code.html owasp.org: https://owasp.org/Top10/A03_2021-Injection/ github.com: https://github.com/geraldoalcantara/CVE-2023-49540