CVE-2022-36254

Multiple persistent cross-site scripting (XSS) vulnerabilities in index.php in tramyardg Hotel Management System 1.0 allow remote attackers to inject arbitrary web script or HTML via multiple parameters such as "fullname".
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:hotel_management_system_project:hotel_management_system:1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-09-12 04:15

Updated : 2022-09-15 03:49


NVD link : CVE-2022-36254

Mitre link : CVE-2022-36254


JSON object : View

Products Affected

hotel_management_system_project

  • hotel_management_system
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')