CVE-2023-47446: XSS
Published Nov 15, 2023
·Updated
Pre-School Enrollment version 1.0 is vulnerable to Cross Site Scripting (XSS) on the profile.php page via fullname parameter.
Affected Software
1 affected component
Phpgurukul Pre-School Enrollment System=1.0
Event History
Nov 15, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2023-47446?
CVE-2023-47446 is a vulnerability in Pre-School Enrollment version 1.0 that allows for Cross-Site Scripting (XSS) attacks on the profile.php page via the fullname parameter.
2
How severe is CVE-2023-47446?
CVE-2023-47446 has a severity level of medium with a CVSS score of 5.4.
3
How does CVE-2023-47446 affect the software?
CVE-2023-47446 affects Pre-School Enrollment version 1.0.
4
How can I fix CVE-2023-47446?
To fix CVE-2023-47446, update to a patched version of Pre-School Enrollment or apply the recommended security measures provided by the software vendor.
5
What is the CWE classification of CVE-2023-47446?
CVE-2023-47446 is classified under CWE-79 (Improper Neutralization of Input During Web Page Generation).