First published: Fri May 19 2023(Updated: )
A vulnerability classified as problematic has been found in SourceCodester Class Scheduling System 1.0. Affected is an unknown function of the file /admin/save_teacher.php of the component POST Parameter Handler. The manipulation of the argument Academic_Rank leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-229428.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Class Scheduling System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-2814.
CVE-2023-2814 has a severity rating of 6.1 (medium).
The affected software of CVE-2023-2814 is Class Scheduling System 1.0.
CVE-2023-2814 affects the file /admin/save_teacher.php of the component POST Parameter Handler by allowing cross-site scripting through the manipulation of the Academic_Rank parameter.
To fix CVE-2023-2814, it is recommended to apply the latest updates or patches provided by the software vendor.