Sourcecodester Online Market Place Site 1.0 is vulnerable to Cross Site Scripting (XSS), allowing attackers to register as a Seller then create new products containing XSS payloads in the 'Product Title' and 'Short Description' fields.
References
Link | Resource |
---|---|
https://packetstormsecurity.com/files/168250/omps10-xss.txt | Exploit Third Party Advisory VDB Entry |
https://www.sourcecodester.com/php/15273/online-market-place-site-phpoop-free-source-code.html | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-09-26T18:27:33
Updated: 2022-09-26T18:27:33
Reserved: 2022-05-02T00:00:00
Link: CVE-2022-30003
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-09-26T19:15:09.500
Modified: 2022-09-28T17:04:10.997
Link: CVE-2022-30003
JSON object: View
Redhat Information
No data.
CWE