CVE-2022-42205: XSS
Published Oct 21, 2022
·Updated
PHPGurukul Hospital Management System In PHP V 4.0 is vulnerable to Cross Site Scripting (XSS) via add-patient.php.
Affected Software
2 affected components
Hospital Management System Project Hospital Management System=4.0
Phpgurukul Hospital Management System=4.0
Event History
Oct 21, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-42205?
The severity of CVE-2022-42205 is medium with a CVSS score of 5.4.
2
How does CVE-2022-42205 affect the PHPGurukul Hospital Management System?
CVE-2022-42205 affects PHPGurukul Hospital Management System version 4.0 by enabling Cross Site Scripting (XSS) attacks through the add-patient.php page.
3
What is Cross Site Scripting (XSS)?
Cross Site Scripting (XSS) is a type of security vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
4
How can I fix CVE-2022-42205?
To fix CVE-2022-42205, update PHPGurukul Hospital Management System to a version that addresses the XSS vulnerability.
5
Where can I find more information about CVE-2022-42205?
You can find more information about CVE-2022-42205 at https://sisl.lab.uic.edu/projects/chess/cross-site-scripting-in-hms2/