CVE-2021-45866: XSS
A Stored Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Student Attendance Management System 1.0 via the couse filed in index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-45866?
The severity of CVE-2021-45866 is medium with a CVSS score of 5.4.
How does the Stored Cross Site Scripting (XSS) vulnerability in CVE-2021-45866 work?
The vulnerability in CVE-2021-45866 allows an attacker to store malicious scripts in the couse field of the Sourcecodester Student Attendance Management System, which are then executed when accessed by other users.
What software is affected by CVE-2021-45866?
The Student Attendance Management System version 1.0 by Sourcecodester is affected by CVE-2021-45866.
Is there a fix available for CVE-2021-45866?
Currently, there is no available fix or patch for CVE-2021-45866. It is recommended to avoid using or accessing the affected software until a patch is released.
Where can I find more information about CVE-2021-45866?
More information about CVE-2021-45866 can be found at the following link: [GitHub - XSS-in-Student-attendance-management](https://github.com/lohyt/XSS-in-Student-attendance-management)