CVE-2023-31934: XSS
Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the adminname parameter of admin-profile.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-31934?
The severity of CVE-2023-31934 is medium with a score of 4.8.
How can a remote attacker exploit CVE-2023-31934?
A remote attacker can exploit CVE-2023-31934 by sending malicious input through the adminname parameter of admin-profile.php in Rail Pass Management System v.1.0.
Can an attacker obtain sensitive information through CVE-2023-31934?
Yes, an attacker can obtain sensitive information by exploiting CVE-2023-31934 in Rail Pass Management System v.1.0.
Is there a fix available for CVE-2023-31934?
We recommend updating Rail Pass Management System to a version that has addressed the Cross Site Scripting vulnerability reported in CVE-2023-31934.
Where can I find more information about CVE-2023-31934?
You can find more information about CVE-2023-31934 in the BugReport repository on GitHub: https://github.com/DiliLearngent/BugReport/blob/main/php/Rail-Pass-Management-System/bug1-XSS-in-Admin-Name.md