Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-72259
HistorySep 12, 2023 - 12:00 a.m.

Inventory Management System Cross-Site Scripting Vulnerability (CNVD-2023-72259)

2023-09-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
4
inventory management
cross-site scripting
vulnerability
name parameter
address parameter
web script
html
payload
attack

0.001 Low

EPSS

Percentile

20.6%

Inventory Management System is an inventory management system. Inventory Management System v1.0 version of the cross-site scripting vulnerability, the vulnerability stems from the lack of effective filtering and escaping of user-supplied data in the Name, Address parameter, which can be exploited by an attacker to execute arbitrary Web script or HTML by injecting a carefully designed payload.

0.001 Low

EPSS

Percentile

20.6%

Related for CNVD-2023-72259