CVE-2022-4053
Student Attendance Management System createClass.php cross site scripting
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability was found in Student Attendance Management System. It has been classified as problematic. Affected is an unknown function of the file createClass.php. The manipulation of the argument className leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-213846 is the identifier assigned to this vulnerability.
Se encontró una vulnerabilidad en el Student Attendance Management System. Ha sido clasificado como problemático. Una función desconocida del archivo createClass.php es afectada por esta vulnerabilidad. La manipulación del argumento className conduce a cross site scripting. Es posible lanzar el ataque de forma remota. El exploit ha sido divulgado al público y puede utilizarse. VDB-213846 es el identificador asignado a esta vulnerabilidad.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-11-17 CVE Reserved
- 2022-11-17 CVE Published
- 2024-06-09 EPSS Updated
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
- CWE-707: Improper Neutralization
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://vuldb.com/?id.213846 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://github.com/rickxy/Student-Attendance-Management-System/issues/3 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Student Attendance Management System Project Search vendor "Student Attendance Management System Project" | Student Attendance Management System Search vendor "Student Attendance Management System Project" for product "Student Attendance Management System" | - | - |
Affected
|