Описание
A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Mobile Comparison Website 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_field. The manipulation of the argument Field Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-227675.
Ссылки
- ExploitThird Party Advisory
- Permissions RequiredVDB Entry
- Permissions RequiredVDB Entry
- ExploitThird Party Advisory
- Permissions RequiredVDB Entry
- Permissions RequiredVDB Entry
Уязвимые конфигурации
EPSS
2.4 Low
CVSS3
4.8 Medium
CVSS3
3.3 Low
CVSS2
Дефекты
Связанные уязвимости
A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Mobile Comparison Website 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_field. The manipulation of the argument Field Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-227675.
Уязвимость сценария classes/Master.php?f=save_field панели администратора CMS-системы Mobile Comparison Website, позволяющая нарушителю осуществлять межсайтовые сценарные атаки
EPSS
2.4 Low
CVSS3
4.8 Medium
CVSS3
3.3 Low
CVSS2