CVE-2022-46128: XSS
Published Jan 25, 2023
·Updated
phpgurukul Doctor Appointment Management System V 1.0.0 is vulnerable to Cross Site Scripting (XSS) via searchdata=.
Affected Software
2 affected components
Doctor Appointment Management System Project Doctor Appointment Management System=1.0.0
Phpgurukul Doctor Appointment Management System=1.0.0
Event History
Jan 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 26, 2023
Data Sourced
via NVD·09:18 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-46128?
CVE-2022-46128 has a medium severity rating due to its Cross Site Scripting (XSS) vulnerability.
2
How do I fix CVE-2022-46128?
To fix CVE-2022-46128, sanitize and validate user inputs in the search functionality to prevent XSS attacks.
3
Which versions of the Doctor Appointment Management System are affected by CVE-2022-46128?
CVE-2022-46128 affects version 1.0.0 of the Doctor Appointment Management System.
4
What type of vulnerability is CVE-2022-46128?
CVE-2022-46128 is classified as a Cross Site Scripting (XSS) vulnerability.
5
Can CVE-2022-46128 lead to data breaches?
Yes, CVE-2022-46128 could potentially lead to data breaches if exploited, as it allows attackers to execute scripts in the context of the user's session.