CVE-2021-27317: XSS
Published Mar 1, 2021
·Updated
Cross Site Scripting (XSS) vulnerability in contactus.php in Doctor Appointment System 1.0 allows remote attackers to inject arbitrary web script or HTML via the comment parameter.
Affected Software
1 affected component
Doctor Appointment System Project Doctor Appointment System=1.0
Event History
Mar 1, 2021
CVE Published
via MITRE·08:16 PM
Data Sourced
via MITRE·08:16 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-27317?
The severity of CVE-2021-27317 is medium with a CVSS score of 6.1.
2
What is the affected software for CVE-2021-27317?
The affected software for CVE-2021-27317 is Doctor Appointment System 1.0.
3
What is the CWE category for CVE-2021-27317?
The CWE category for CVE-2021-27317 is CWE-79 (Cross-Site Scripting).
4
How does CVE-2021-27317 impact the system?
CVE-2021-27317 allows remote attackers to inject arbitrary web script or HTML via the comment parameter.
5
Are there any available fixes for CVE-2021-27317?
There are no specific fixes mentioned for CVE-2021-27317. It is recommended to apply security updates or patches provided by the software vendor.