5.4
CVSSv3

CVE-2023-46580

CVSSv4: NA | CVSSv3: 5.4 | CVSSv2: NA | VMScore: 640 | EPSS: 0.00292 | KEV: Not Included
Published: 14/11/2023 Updated: 21/11/2024

Vulnerability Summary

Cross-Site Scripting (XSS) vulnerability in Inventory Management V1.0 allows malicious users to execute arbitrary code via the pname parameter of the editProduct.php component.

Vulnerable Product Search on Vulmon Subscribe to Product

code-projects inventory management 1.0

Github Repositories

Code-Projects Inventory Management 10 Welcome to the Code-Projects Inventory Management 10 repository This project aims to provide efficient inventory management Security Vulnerabilities CVE-2023-46580 Description: Stored Cross-Site Scripting (XSS) vulnerability via editProductphp, 'pname' parameter Affected Version: 10 Affected File: /Inventory-Management/mod