Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-99pw-j6hr-cv22

Опубликовано: 11 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.8
CVSS3: 2.4

Описание

A vulnerability has been found in 1000 Projects Bookstore Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file process_book_add.php of the component Add Book Page. The manipulation of the argument Book Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

A vulnerability has been found in 1000 Projects Bookstore Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file process_book_add.php of the component Add Book Page. The manipulation of the argument Book Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

EPSS

Процентиль: 26%
0.0009
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 2.4
nvd
12 месяцев назад

A vulnerability has been found in 1000 Projects Bookstore Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file process_book_add.php of the component Add Book Page. The manipulation of the argument Book Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

EPSS

Процентиль: 26%
0.0009
Низкий

4.8 Medium

CVSS4

2.4 Low

CVSS3

Дефекты

CWE-79