CVE-2022-3716: SourceCodester Online Medicine Ordering System cross site scripting
A vulnerability classified as problematic was found in SourceCodester Online Medicine Ordering System 1.0. Affected by this vulnerability is an unknown functionality of the file /omos/admin/?page=user/list. The manipulation of the argument First Name/Middle Name/Last Name leads to cross site scripting. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-212347.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-3716?
CVE-2022-3716 is classified as problematic, indicating potential risks to the system.
How do I fix CVE-2022-3716?
To fix CVE-2022-3716, you should upgrade the SourceCodester Online Medicine Ordering System to a patched version.
What components are affected by CVE-2022-3716?
CVE-2022-3716 affects the file located at /omos/admin/?page=user/list in the SourceCodester Online Medicine Ordering System 1.0.
What are the potential impacts of CVE-2022-3716?
The manipulation of user input for First Name, Middle Name, or Last Name in CVE-2022-3716 can lead to unauthorized access or data modification.
Is CVE-2022-3716 still exploitable in version 1.0?
Yes, CVE-2022-3716 is still exploitable in SourceCodester Online Medicine Ordering System version 1.0 without a fix.