First published: Wed Jan 25 2023(Updated: )
A cross-site scripting (XSS) vulnerability in Doctor Appointment Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search function.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Doctor Appointment Management System Project Doctor Appointment Management System | =1.0.0 | |
phpgurukul Doctor Appointment Management System | =1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45730 is classified as a high-severity vulnerability due to its potential for executing arbitrary scripts and compromising user data.
To fix CVE-2022-45730, sanitize user input in the Search function to prevent XSS attacks.
CVE-2022-45730 affects version 1.0.0 of the Doctor Appointment Management System.
CVE-2022-45730 is a cross-site scripting (XSS) vulnerability.
CVE-2022-45730 does not directly allow remote code execution but can facilitate the execution of malicious scripts.