CVE-2022-45223: XSS
Published Nov 28, 2022
·Updated
Web-Based Student Clearance System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /Admin/add-student.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the txtfullname parameter.
Affected Software
1 affected component
Web-based Student Clearance System Project Web-based Student Clearance System=1.0
Event History
Nov 28, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the CVE ID of this vulnerability?
The CVE ID of this vulnerability is CVE-2022-45223.
2
What is the severity level of CVE-2022-45223?
The severity level of CVE-2022-45223 is medium (4.8).
3
What is the affected software?
The affected software is Web-Based Student Clearance System v1.0.
4
Which component of Web-Based Student Clearance System is vulnerable?
The vulnerable component is /Admin/add-student.php.
5
How can attackers exploit this vulnerability?
Attackers can exploit this vulnerability by injecting a crafted payload into the txtfullname parameter to execute arbitrary web scripts or HTML.