First published: Tue Apr 11 2023(Updated: )
A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/?page=maintenance/brand. The manipulation of the argument Brand Name leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-225536.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Online Computer And Laptop Store | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-1988 is medium (4.8).
The affected software of CVE-2023-1988 is SourceCodester Online Computer and Laptop Store 1.0.
The CWE of CVE-2023-1988 is CWE-79 (Cross-site Scripting).
Exploiting CVE-2023-1988 involves manipulating the 'Brand Name' argument in the /admin/?page=maintenance/brand page to carry out cross-site scripting attacks.
To fix CVE-2023-1988, the software vendor should release a patch or update that addresses the cross-site scripting vulnerability in the 'Brand Name' parameter.