CVE-2023-41614: XSS
Published Sep 21, 2023
·Updated
A stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Description of Animal parameter.
Affected Software
2 affected components
Phpgurukul Zoo Management System=1.0
Zoo Management System Project Zoo Management System=1.0
Event History
Sep 21, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of the stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System v1.0?
The vulnerability ID is CVE-2023-41614.
2
What is the severity of CVE-2023-41614?
The severity of CVE-2023-41614 is medium with a severity value of 4.8.
3
How does the stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System v1.0 work?
The vulnerability allows attackers to execute arbitrary web scripts or HTML by injecting a crafted payload into the Description of Animal parameter.
4
What software versions are affected by the stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System?
Zoo Management System v1.0 is affected by the vulnerability.
5
Is there a fix available for the stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System?
A fix for the vulnerability may be available from Zoo Management System Project.