First published: Mon Mar 01 2021(Updated: )
Cross Site Scripting (XSS) vulnerability in contactus.php in Doctor Appointment System 1.0 allows remote attackers to inject arbitrary web script or HTML via the lastname parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Doctors Appointment System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of the Cross Site Scripting vulnerability is CVE-2021-27318.
The severity level of CVE-2021-27318 is medium.
The affected software is Doctor Appointment System 1.0.
The Cross Site Scripting vulnerability in contactus.php allows remote attackers to inject arbitrary web script or HTML via the lastname parameter.
Yes, you can find more information about CVE-2021-27318 at the following references: [Link 1](http://packetstormsecurity.com/files/161574/Doctor-Appointment-System-1.0-Cross-Site-Scripting.html), [Link 2](https://www.sourcecodester.com/php/14182/doctor-appointment-system.html).