6.1
CVSSv3

CVE-2020-25272

Published: 08/10/2020 Updated: 16/10/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

In SourceCodester Online Bus Booking System 1.0, there is XSS through the name parameter in book_now.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

online bus booking system project online bus booking system 1.0

Github Repositories

Online Bus Booking System 1.0,there is XSS through the name parameter in book_now.php

CVE-2020-25272 #Online Bus Booking System 10,there is XSS through the name parameter in book_nowphp #Vendor - SourceCodester #Product - wwwsourcecodestercom/php/14438/online-bus-booking-system-project-using-phpmysqlhtml V 10 #Vulnerability Type - Cross Site Scripting (XSS) #Addition Information - Single XSS payload will trigger in all Dashboard, so account take ov