CVE-2023-36375: XSS
Cross Site Scripting vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code via a crafted payload to the Guardian name, Guardian relation, complimentary address, city, permanent address, and city parameters in the Book Hostel & Room Details page.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-36375?
CVE-2023-36375 is a Cross Site Scripting vulnerability in Hostel Management System v2.1 that allows an attacker to execute arbitrary code.
How does the vulnerability in Hostel Management System v2.1 work?
The vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code by providing a crafted payload to certain parameters in the Book Hostel & Room Details page.
Which parameters are affected by the Cross Site Scripting vulnerability in Hostel Management System v2.1?
The Guardian name, Guardian relation, complimentary address, city, permanent address, and city parameters in the Book Hostel & Room Details page are affected by the Cross Site Scripting vulnerability in Hostel Management System v2.1.
What is the severity of CVE-2023-36375?
CVE-2023-36375 has a severity rating of medium with a score of 5.4.
How can I fix the Cross Site Scripting vulnerability in Hostel Management System v2.1?
To fix the Cross Site Scripting vulnerability in Hostel Management System v2.1, it is recommended to apply the latest security patches or updates provided by the software vendor.