First published: Sun Sep 11 2022(Updated: )
In Simple Online Book Store System 1.0 in /admin_book.php the Title, Author, and Description parameters are vulnerable to Cross Site Scripting(XSS).
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Simple Online Book Store System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37796 is classified as a medium severity Cross Site Scripting (XSS) vulnerability.
To fix CVE-2022-37796, sanitize and validate the Title, Author, and Description parameters to prevent untrusted input.
CVE-2022-37796 affects Simple Online Book Store System version 1.0.
Yes, CVE-2022-37796 can lead to unauthorized access and manipulation of content through XSS attacks.
CVE-2022-37796 can be exploited remotely through a web browser.