CVE-2022-3546: SourceCodester Simple Cold Storage Management System Create User cross site scripting
A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /csms/admin/?page=user/list of the component Create User Handler. The manipulation of the argument First Name/Last Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-211046 is the identifier assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-3546?
CVE-2022-3546 is classified as a problematic vulnerability.
How do I fix CVE-2022-3546?
To fix CVE-2022-3546, it is recommended to update to the latest version of the Simple Cold Storage Management System.
Which versions are affected by CVE-2022-3546?
CVE-2022-3546 affects version 1.0 of the Simple Cold Storage Management System.
What component is vulnerable in CVE-2022-3546?
The vulnerability in CVE-2022-3546 is found in the Create User Handler of the admin page.
What type of vulnerability is CVE-2022-3546?
CVE-2022-3546 is characterized as a potential input validation issue that may allow for manipulation.