First published: Wed Jul 27 2022(Updated: )
A cross-site scripting (XSS) vulnerability in /index.php/?p=report of Online Fire Reporting System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the "Contac #" text field.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Online Fire Reporting System Project Online Fire Reporting System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-34611 is a cross-site scripting (XSS) vulnerability in the Online Fire Reporting System (OFRS) version 1.0.
CVE-2022-34611 allows attackers to execute arbitrary web scripts or HTML by injecting a crafted payload into the "Contact #" text field on the /index.php/?p=report page of OFRS version 1.0.
CVE-2022-34611 has a severity rating of medium (5.4).
To fix CVE-2022-34611, it is recommended to update the Online Fire Reporting System (OFRS) to a version that addresses the XSS vulnerability.
You can find more information about CVE-2022-34611 on the following references: [http://online.com](http://online.com), [https://github.com/As4ki/CVE-report/blob/main/OFRS.md](https://github.com/As4ki/CVE-report/blob/main/OFRS.md), [https://www.sourcecodester.com/](https://www.sourcecodester.com/)