First published: Thu Jun 16 2022(Updated: )
Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zoo Management System Project Zoo Management System | =1.0 | |
PHPGURUKUL Zoo Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-31914 is medium with a CVSS score of 5.4.
CVE-2022-31914 affects Zoo Management System v1.0 by allowing Cross Site Scripting (XSS) attacks through the 'save_animal' functionality.
To fix CVE-2022-31914 in Zoo Management System v1.0, you should update to a patched version of the software or apply any recommended security patches provided by the vendor.
Cross-Site Scripting (XSS) is a type of security vulnerability that allows an attacker to inject malicious scripts into web pages viewed by other users.
The Common Weakness Enumeration (CWE) ID for CVE-2022-31914 is CWE-79, which represents Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').