First published: Mon Jul 10 2023(Updated: )
Cross-Site Scripting (XSS) vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code via a crafted payload to the search booking field.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hostel Management System Project Hostel Management System | =2.1 | |
PHPGurukul Hostel Management System | =2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-36939.
The severity level of CVE-2023-36939 is medium (6.1).
The Cross-Site Scripting (XSS) vulnerability in Hostel Management System v2.1 allows an attacker to execute arbitrary code by sending a specially crafted payload to the search booking field.
Hostel Management System v2.1 and PHPGurukul Hostel Management System v2.1 are affected by CVE-2023-36939.
To fix CVE-2023-36939, apply the latest security patches or updates provided by the software vendor and validate user input to prevent the execution of arbitrary code.