First published: Tue Mar 05 2024(Updated: )
Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the feedback form.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Online Flight Booking Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-46088 is classified as a medium severity cross-site scripting (XSS) vulnerability.
To fix CVE-2022-46088, ensure proper validation and sanitization of user input in the feedback form.
CVE-2022-46088 can enable attackers to perform cross-site scripting attacks, potentially leading to session hijacking or data theft.
Users of Online Flight Booking Management System version 1.0 are affected by CVE-2022-46088.
Yes, CVE-2022-46088 is relatively easy to exploit due to the exposure of an unprotected feedback form.