5.4
CVSSv3

CVE-2022-41358

Published: 20/10/2022 Updated: 03/03/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A stored cross-site scripting (XSS) vulnerability in Garage Management System v1.0 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the categoriesName parameter in createCategories.php.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

garage management system project garage management system 1.0

Exploits

Garage Management System version 10 suffers from a persistent cross site scripting vulnerability ...

Github Repositories

Exploit Title: Garage Management System 10 - 'categoriesName' - Stored XSS Exploit Author: Sam Wallace Software Link: wwwsourcecodestercom/php/15485/garage-management-system-using-phpmysql-source-codehtml Version: 10 Tested on: Debian ID: CVE-2022-41358   Summary: Garage Management System utilizes client side validation to prevent XSS Using burp