First published: Thu Mar 07 2024(Updated: )
Cross Site Scripting (XSS) vulnerability in the add-airline form of Online Flight Booking Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the airline parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Online Flight Booking Management System | =1.0 | |
Unknown Online Flight Booking Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-46089 is classified as a medium severity Cross Site Scripting (XSS) vulnerability.
To fix CVE-2022-46089, ensure proper input validation and sanitization of the 'airline' parameter in the add-airline form.
CVE-2022-46089 affects users of Online Flight Booking Management System version 1.0.
Attackers can execute arbitrary web scripts or HTML by injecting a crafted payload into the airline parameter.
CVE-2022-46089 is associated with Cross Site Scripting (XSS) attacks.