Lucene search

K
cveMitreCVE-2023-41593
HistorySep 11, 2023 - 6:15 p.m.

CVE-2023-41593

2023-09-1118:15:10
CWE-79
mitre
web.nvd.nist.gov
21
cve-2023-41593
cross-site scripting
xss
dairy farm shop management system
php
mysql

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

47.0%

Multiple cross-site scripting (XSS) vulnerabilities in Dairy Farm Shop Management System Using PHP and MySQL v1.1 allow attackers to execute arbitrary web scripts and HTML via a crafted payload injected into the Category and Category Field parameters.

Affected configurations

Nvd
Node
phpgurukuldairy_farm_shop_management_systemMatch1.1
VendorProductVersionCPE
phpgurukuldairy_farm_shop_management_system1.1cpe:2.3:a:phpgurukul:dairy_farm_shop_management_system:1.1:*:*:*:*:*:*:*

CVSS3

5.4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

EPSS

0.001

Percentile

47.0%

Related for CVE-2023-41593