First published: Tue Nov 21 2023(Updated: )
Cross Site Scripting in SUP Online Shopping v.1.0 allows a remote attacker to execute arbitrary code via the Name, Email and Address parameters in the Register New Account component.
|Affected Software||Affected Version||How to fix|
|Nayemhowlader Sup Online Shopping||=1.0|
CVE-2023-48124 is a Cross Site Scripting vulnerability in SUP Online Shopping v.1.0 that allows a remote attacker to execute arbitrary code.
CVE-2023-48124 works by exploiting the Name, Email, and Address parameters in the Register New Account component of SUP Online Shopping v.1.0.
CVE-2023-48124 has a severity level of medium with a CVSS score of 5.4.
CVE-2023-48124 affects version 1.0 of SUP Online Shopping.
To fix CVE-2023-48124, it is recommended to apply the latest patch or upgrade to a newer version of SUP Online Shopping.