First published: Tue Nov 14 2023(Updated: )
Cross-Site Scripting (XSS) vulnerability in Inventory Management V1.0 allows attackers to execute arbitrary code via the pname parameter of the editProduct.php component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
code-projects Inventory Management | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2023-46580.
The severity of CVE-2023-46580 is medium.
The affected software version is Inventory Management V1.0.
The vulnerability occurs through a Cross-Site Scripting (XSS) vulnerability in the pname parameter of the editProduct.php component.
Yes, a fix is available for CVE-2023-46580. It is recommended to update to a version that addresses this vulnerability.