Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-46128: CVE/2022-46128 at main · Rajeshwar40/CVE

phpgurukul Doctor Appointment Management System V 1.0.0 is vulnerable to Cross Site Scripting (XSS) via searchdata=.

CVE
#xss#vulnerability#php

[Suggested description]

Doctor Appointment Management System V 1.0.0 is vulnerable

> to Cross Site Scripting (XSS) via searchdata=.

>

> ------------------------------------------

>

> [Vulnerability Type]

> Cross Site Scripting (XSS)

>

> ------------------------------------------

>

> [Vendor of Product]

> https://phpgurukul.com/

>

> ------------------------------------------

>

> [Affected Product Code Base]

> Doctor Appointment Management System - V 1.0.0

>

> ------------------------------------------

>

> [Affected Component]

> searchdata=

>

> ------------------------------------------

>

> [Attack Type]

> Local

>

> ------------------------------------------

>

> [Impact Code execution]

> true

>

> ------------------------------------------

>

> [Reference]

> https://phpgurukul.com/projects/Doctor-Appointment-System_PHP.zip

>

> ------------------------------------------

>

> [Discoverer]

> Rajeshwar Singh

Use CVE-2022-46128.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda