5.4
CVSSv3

CVE-2022-40348

Published: 18/02/2023 Updated: 28/02/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Cross Site Scripting (XSS) vulnerability in Intern Record System version 1.0 in /intern/controller.php in 'name' and 'email' parameters, allows malicious users to execute arbitrary code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

intern record system project intern record system 1.0

Github Repositories

CVE-2022-40348: Intern Record System - 'name' and 'email' Cross-site Scripting (Unauthenticated)

CVE-2022-40348: Intern Record System - 'name' and 'email' Cross-site Scripting (Unauthenticated XSS) Exploit Title: Intern Record System - 'name' and 'email' Cross-site Scripting (Unauthenticated XSS) Date: 2022-06-09 Exploit Author: Hamdi Sevben Vendor Homepage: code-projectsorg/intern-record-system-in-php-with-source-code/ Sof