First published: Wed May 01 2024(Updated: )
Cross Site Scripting (XSS) vulnerability in sourcecodester oretnom23 pos point sale system 1.0, allows attackers to execute arbitrary code via the code, name, and description inputs in file Main.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Pos - Point Of Sale System | ||
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23021 is classified as a Cross Site Scripting (XSS) vulnerability which can potentially allow unauthorized code execution.
To fix CVE-2023-23021, sanitize and validate all inputs in the code, name, and description fields in Main.php to prevent code execution.
CVE-2023-23021 affects the Sourcecodester Oretnom23 POS Point Sale System version 1.0.
Yes, CVE-2023-23021 can be exploited remotely by attackers injecting malicious scripts through vulnerable input fields.
CVE-2023-23021 can lead to unauthorized actions on behalf of users and the potential exposure of sensitive data.