CVE-2023-3887: Campcodes Beauty Salon Management System search-appointment.php cross site scripting
A vulnerability was found in Campcodes Beauty Salon Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/search-appointment.php. The manipulation of the argument searchdata leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-235249 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-3887?
The severity of CVE-2023-3887 is medium.
How does CVE-2023-3887 affect Campcodes Beauty Salon Management System?
CVE-2023-3887 affects an unknown functionality of Campcodes Beauty Salon Management System 1.0 through the file /admin/search-appointment.php.
What is the vulnerability description for CVE-2023-3887?
CVE-2023-3887 is a cross-site scripting vulnerability in Campcodes Beauty Salon Management System 1.0 through the argument searchdata.
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-3887?
The CWE ID for CVE-2023-3887 is CWE-79.
How can I fix the vulnerability in Campcodes Beauty Salon Management System?
To fix the vulnerability in Campcodes Beauty Salon Management System, it is recommended to update to a patched version or apply the latest security patches.