First published: Tue Nov 21 2023(Updated: )
Cross Site Scripting in SUP Online Shopping v.1.0 allows a remote attacker to execute arbitrary code via the Name, Email and Address parameters in the Register New Account component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nayemhowlader Sup Online Shopping | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-48124 is a Cross Site Scripting vulnerability in SUP Online Shopping v.1.0 that allows a remote attacker to execute arbitrary code.
CVE-2023-48124 works by exploiting the Name, Email, and Address parameters in the Register New Account component of SUP Online Shopping v.1.0.
CVE-2023-48124 has a severity level of medium with a CVSS score of 5.4.
CVE-2023-48124 affects version 1.0 of SUP Online Shopping.
To fix CVE-2023-48124, it is recommended to apply the latest patch or upgrade to a newer version of SUP Online Shopping.