ZeroHour

CVE-2022-46091

CVSS 3.1
4.7 medium
EPSS
<1%p31
Published
()
Modified
Description

Cross Site Scripting (XSS) vulnerability in the feedback form of Online Flight Booking Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the airline parameter.

Vendors
oretnom23
Products
online flight booking management system
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.