ZeroHour

CVE-2022-36203

PoC
CVSS 3.1
6.1 medium
EPSS
1%p61
Published
()
Modified
Description

Doctor's Appointment System 1.0 is vulnerable to Cross Site Scripting (XSS) via the admin panel. In addition, it leads to takeover the administrator account by stealing the cookie via XSS.

Vendors
doctor\'s appointment system project
Products
doctor\'s appointment system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.