CVE-2021-27318: XSS
Cross Site Scripting (XSS) vulnerability in contactus.php in Doctor Appointment System 1.0 allows remote attackers to inject arbitrary web script or HTML via the lastname parameter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of the Cross Site Scripting vulnerability?
The vulnerability ID of the Cross Site Scripting vulnerability is CVE-2021-27318.
What is the severity level of CVE-2021-27318?
The severity level of CVE-2021-27318 is medium.
What is the affected software?
The affected software is Doctor Appointment System 1.0.
How does the Cross Site Scripting vulnerability in contactus.php allow remote attackers to inject arbitrary web script or HTML?
The Cross Site Scripting vulnerability in contactus.php allows remote attackers to inject arbitrary web script or HTML via the lastname parameter.
Are there any references available for more information about CVE-2021-27318?
Yes, you can find more information about CVE-2021-27318 at the following references: [Link 1](http://packetstormsecurity.com/files/161574/Doctor-Appointment-System-1.0-Cross-Site-Scripting.html), [Link 2](https://www.sourcecodester.com/php/14182/doctor-appointment-system.html).