Описание
A vulnerability has been discovered in Diño Physics School Assistant version 2.3. This vulnerability impacts unidentified code within the file /classes/Users.php?f=save. Manipulating the parameter middlename results in cross-site scripting.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:dino_physics_school_assistant_project:dino_physics_school_assistant:2.3:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00528
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79
EPSS
Процентиль: 67%
0.00528
Низкий
6.1 Medium
CVSS3
Дефекты
CWE-79