First published: Mon Jul 10 2023(Updated: )
Cross-Site Scripting (XSS) vulnerability in PHPGurukul Online Security Guards Hiring System using PHP and MySQL 1.0 allows attackers to execute arbitrary code via a crafted payload to the search booking box.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Online Security Guards Hiring System Project Online Security Guards Hiring System | =1.0 | |
PHPGurukul Online Security Guards Hiring System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36936 is a Cross-Site Scripting (XSS) vulnerability in PHPGurukul Online Security Guards Hiring System using PHP and MySQL 1.0.
CVE-2023-36936 allows attackers to execute arbitrary code by crafting a malicious payload and submitting it to the search booking box.
CVE-2023-36936 has a severity rating of medium.
To fix CVE-2023-36936, apply the latest security patch or update to a version of PHPGurukul Online Security Guards Hiring System that is not affected by this vulnerability.
The CWE ID for CVE-2023-36936 is 79, which refers to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').