Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2mx4-jrqf-62cp

Опубликовано: 23 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A reflected cross-site scripting (XSS) vulnerability in the component mcgs/download-medical-cards.php of PHPGURUKUL Medical Card Generation System using PHP and MySQL v1.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the searchdata parameter.

A reflected cross-site scripting (XSS) vulnerability in the component mcgs/download-medical-cards.php of PHPGURUKUL Medical Card Generation System using PHP and MySQL v1.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the searchdata parameter.

EPSS

Процентиль: 26%
0.00093
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
9 месяцев назад

A reflected cross-site scripting (XSS) vulnerability in the component mcgs/download-medical-cards.php of PHPGURUKUL Medical Card Generation System using PHP and MySQL v1.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload into the searchdata parameter.

EPSS

Процентиль: 26%
0.00093
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79