CVE-2023-1041: SourceCodester Simple Responsive Tourism Website rate_review.php cross site scripting
A vulnerability, which was classified as problematic, was found in SourceCodester Simple Responsive Tourism Website 1.0. This affects an unknown part of the file /tourism/ratereview.php. The manipulation of the argument id with the input 1"><script>alert(1111)</script> leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-221799.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-1041?
CVE-2023-1041 is classified as a problematic vulnerability due to potential cross-site scripting (XSS) attacks.
How do I fix CVE-2023-1041?
To fix CVE-2023-1041, you should validate and sanitize user input on the /tourism/rate_review.php file to prevent XSS.
What software is affected by CVE-2023-1041?
CVE-2023-1041 affects version 1.0 of the Simple Responsive Tourism Website.
What type of attack is associated with CVE-2023-1041?
CVE-2023-1041 is associated with cross-site scripting (XSS) attacks due to improper handling of user input.
Where in the software is the vulnerability CVE-2023-1041 located?
CVE-2023-1041 is located in the file /tourism/rate_review.php.