A cross-site scripting (XSS) vulnerability in Book Store Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Level parameter under the Add New System User module.
References
Link | Resource |
---|---|
https://github.com/sudoninja-noob/CVE-2022-45217/blob/main/CVE-2022-45217 | Exploit Third Party Advisory |
https://www.sourcecodester.com/php/15748/book-store-management-system-project-using-php-codeigniter-3-free-source-code.html | Product |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-12-07T00:00:00
Updated: 2022-12-07T00:00:00
Reserved: 2022-11-14T00:00:00
Link: CVE-2022-45217
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-12-07T14:15:10.803
Modified: 2022-12-09T01:15:50.057
Link: CVE-2022-45217
JSON object: View
Redhat Information
No data.
CWE