First published: Wed Nov 15 2023(Updated: )
Pre-School Enrollment version 1.0 is vulnerable to Cross Site Scripting (XSS) on the profile.php page via fullname parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phpgurukul Pre-school Enrollment System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-47446 is a vulnerability in Pre-School Enrollment version 1.0 that allows for Cross-Site Scripting (XSS) attacks on the profile.php page via the fullname parameter.
CVE-2023-47446 has a severity level of medium with a CVSS score of 5.4.
CVE-2023-47446 affects Pre-School Enrollment version 1.0.
To fix CVE-2023-47446, update to a patched version of Pre-School Enrollment or apply the recommended security measures provided by the software vendor.
CVE-2023-47446 is classified under CWE-79 (Improper Neutralization of Input During Web Page Generation).