CVE-2023-36158: XSS
Cross Site Scripting (XSS) vulnerability in sourcecodester Toll Tax Management System 1.0 allows remote attackers to run arbitrary code via the First Name and Last Name fields on the My Account page.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36158?
The severity of CVE-2023-36158 is medium.
How does the XSS vulnerability in sourcecodester Toll Tax Management System 1.0 work?
The remote attackers can run arbitrary code by exploiting the Cross Site Scripting (XSS) vulnerability in the First Name and Last Name fields on the My Account page.
How can I fix the Cross Site Scripting (XSS) vulnerability in sourcecodester Toll Tax Management System 1.0?
To fix the XSS vulnerability, update sourcecodester Toll Tax Management System to a version that addresses the vulnerability.
Is there any reference material available for CVE-2023-36158?
Yes, there are reference materials available for CVE-2023-36158. The references include: [http://toll.com](http://toll.com), [https://github.com/unknown00759/CVE-2023-36158/blob/main/CVE-2023-36158.md](https://github.com/unknown00759/CVE-2023-36158/blob/main/CVE-2023-36158.md), and [https://cyberredteam.tech/posts/cve-2023-36158/](https://cyberredteam.tech/posts/cve-2023-36158/).
What is the CWE ID associated with CVE-2023-36158?
The CWE ID associated with CVE-2023-36158 is 79.