Cross Site Scripting (XSS) vulnerability in sourcecodester Lost and Found Information System 1.0 allows remote attackers to run arbitrary code via the First Name, Middle Name and Last Name fields on the Create User page.
References
Configurations
History
21 Nov 2024, 08:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://lost.com - Not Applicable | |
References | () https://cyberredteam.tech/posts/cve-2023-36159/ - | |
References | () https://www.sourcecodester.com/php/16525/lost-and-found-information-system-using-php-and-mysql-db-source-code-free-download.html - Product |
25 Sep 2023, 16:46
Type | Values Removed | Values Added |
---|---|---|
First Time |
Oretnom23
Oretnom23 lost And Found Information System |
|
CPE | cpe:2.3:a:oretnom23:lost_and_found_information_system:1.0:*:*:*:*:*:*:* |
09 Aug 2023, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
08 Aug 2023, 19:00
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-79 | |
First Time |
Lost And Found Information System Project
Lost And Found Information System Project lost And Found Information System |
|
CPE | cpe:2.3:a:lost_and_found_information_system_project:lost_and_found_information_system:1.0:*:*:*:*:*:*:* | |
References | (MISC) http://lost.com - Not Applicable | |
References | (MISC) https://www.sourcecodester.com/php/16525/lost-and-found-information-system-using-php-and-mysql-db-source-code-free-download.html - Product | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
04 Aug 2023, 02:45
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-04 00:15
Updated : 2024-11-21 08:09
NVD link : CVE-2023-36159
Mitre link : CVE-2023-36159
CVE.ORG link : CVE-2023-36159
JSON object : View
Products Affected
oretnom23
- lost_and_found_information_system
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')