CVE-2021-4232: Zoo Management System manage-ticket.php cross site scripting
Published May 26, 2022
·Updated
A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticket.php. The manipulation with the input <script>alert(1)</script> leads to cross site scripting. It is possible to launch the attack remotely.
Affected Software
2 affected components
Phpgurukul Zoo Management System=1.0
Zoo Management System Project Zoo Management System=1.0
Event History
May 26, 2022
CVE Published
via MITRE·05:05 PM
Data Sourced
via MITRE·05:05 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-4232?
The severity of CVE-2021-4232 is medium (6.1).
2
What is the affected software of CVE-2021-4232?
The affected software of CVE-2021-4232 is Zoo Management System 1.0.
3
What is the vulnerability type of CVE-2021-4232?
The vulnerability type of CVE-2021-4232 is cross-site scripting (XSS).
4
How can I exploit CVE-2021-4232?
To exploit CVE-2021-4232, you can manipulate the input with a malicious script, such as <script>alert(1)</script>, and launch the attack remotely.
5
Is there a fix available for CVE-2021-4232?
To fix CVE-2021-4232, it is recommended to update Zoo Management System to a version that addresses the vulnerability.