CVE-2023-37685: XSS
Published Aug 8, 2023
·Updated
Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Search Report Page of the Admin portal.
Affected Software
2 affected components
Phpgurukul Online Nurse Hiring System=1.0
Anujkumar Online Nurse Hiring System=1.0
Event History
Aug 8, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-37685?
CVE-2023-37685 is a cross-site scripting (XSS) vulnerability in the Search Report Page of the Admin portal of Online Nurse Hiring System v1.0.
2
How severe is CVE-2023-37685?
CVE-2023-37685 has a severity score of 4.8, which is considered medium.
3
Which software is affected by CVE-2023-37685?
The Online Nurse Hiring System v1.0 from Anujkumar and Phpgurukul are affected by CVE-2023-37685.
4
What is the CWE ID of CVE-2023-37685?
The CWE ID of CVE-2023-37685 is CWE-79 (Cross-site Scripting).
5
How can CVE-2023-37685 be fixed?
To fix CVE-2023-37685, the developers should sanitize user input and properly encode the output to prevent cross-site scripting attacks.