First published: Mon Feb 27 2023(Updated: )
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the message parameter on the enquiry page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Art Gallery Management System | =1.0 | |
PHPGurukul Art Gallery Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23158 has been classified as a medium to high severity vulnerability due to its potential for exploitation through stored cross-site scripting.
To fix CVE-2023-23158, sanitize and validate user input on the enquiry page to prevent the injection of malicious scripts.
CVE-2023-23158 affects users of Art Gallery Management System Project version 1.0 and PHPGurukul Art Gallery Management System version 1.0.
CVE-2023-23158 is classified as a stored cross-site scripting (XSS) vulnerability.
Attackers can exploit CVE-2023-23158 by injecting arbitrary web scripts or HTML into the message parameter on the enquiry page.