Cross Site Scripting (XSS) vulnerability in sourcecodester Lost and Found Information System 1.0 allows remote attackers to run arbitrary code via the First Name, Middle Name and Last Name fields on the Create User page.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2023-08-04 00:15
Updated : 2023-08-09 21:15
NVD link : CVE-2023-36159
Mitre link : CVE-2023-36159
JSON object : View
Products Affected
lost_and_found_information_system_project
- lost_and_found_information_system
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
