First published: Fri May 12 2023(Updated: )
A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file classes/Master.php?f=save_inquiry of the component Contact Form. The manipulation of the argument fullname/contact/message leads to cross site scripting. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-228887.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oretnom23 Lost And Found Information System | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-2671 is medium with a CVSS score of 6.1.
CVE-2023-2671 affects version 1.0 of the Oretnom23 Lost and Found Information System.
The CWE associated with CVE-2023-2671 is CWE-79.
We do not provide assistance or guidance on exploiting vulnerabilities. It is important to follow responsible disclosure practices and report vulnerabilities to the appropriate vendor or organization.
To fix the vulnerability in CVE-2023-2671, it is recommended to apply the latest security patch or update provided by the Oretnom23 Lost and Found Information System vendor.