Логотип exploitDog
bind:CVE-2025-45805
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-45805

Количество 2

Количество 2

nvd логотип

CVE-2025-45805

5 месяцев назад

In phpgurukul Doctor Appointment Management System 1.0, an authenticated doctor user can inject arbitrary JavaScript code into their profile name. This payload is subsequently rendered without proper sanitization, when a user visits the website and selects the doctor to book an appointment.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-gmfc-6cfw-wmrf

5 месяцев назад

In phpgurukul Doctor Appointment Management System 1.0, an authenticated doctor user can inject arbitrary JavaScript code into their profile name. This payload is subsequently rendered without proper sanitization, when a user visits the website and selects the doctor to book an appointment.

CVSS3: 7.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-45805

In phpgurukul Doctor Appointment Management System 1.0, an authenticated doctor user can inject arbitrary JavaScript code into their profile name. This payload is subsequently rendered without proper sanitization, when a user visits the website and selects the doctor to book an appointment.

CVSS3: 7.6
0%
Низкий
5 месяцев назад
github логотип
GHSA-gmfc-6cfw-wmrf

In phpgurukul Doctor Appointment Management System 1.0, an authenticated doctor user can inject arbitrary JavaScript code into their profile name. This payload is subsequently rendered without proper sanitization, when a user visits the website and selects the doctor to book an appointment.

CVSS3: 7.6
0%
Низкий
5 месяцев назад

Уязвимостей на страницу