Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-29410
HistoryApr 18, 2023 - 12:00 a.m.

Campcodes Online Traffic Offense Management System Cross-Site Scripting Vulnerability

2023-04-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
web-based
cross-site scripting
vulnerability
user-supplied data
injection
arbitrary script

0.001 Low

EPSS

Percentile

41.7%

Campcodes Online Traffic Offense Management System is a web-based traffic offense management system. A cross-site scripting vulnerability exists in Campcodes Online Traffic Offense Management System v1.0, which stems from the lack of effective filtering and escaping of user-supplied data in the parameter id of the file /admin/offenses/view_details.php, which could be exploited by an attacker to The vulnerability can be exploited to execute arbitrary Web scripts or HTML by injecting a carefully crafted payload.

0.001 Low

EPSS

Percentile

41.7%

Related for CNVD-2023-29410