NA

CVE-2023-49539

Published: 01/03/2024 Updated: 01/03/2024

Vulnerability Summary

Book Store Management System v1.0 exists to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/category. This vulnerability allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the category parameter.

Github Repositories

Book Store Management System v1.0 - Cross-site scripting (XSS) vulnerability in "index.php/category" - vulnerable field: "Category Name"

CVE-2023-49539 Book Store Management System v10 - Cross-site scripting (XSS) vulnerability in "indexphp/category" - vulnerable field: "Category Name" Description: Book Store Management System v10 was discovered to contain a cross-site scripting (XSS) vulnerability in "/bsms_ci/indexphp/category" This vulnerability allows attackers to