CVE-2023-48206: XSS
Published Dec 7, 2023
·Updated
A Cross Site Scripting (XSS) vulnerability in GaatiTrack Courier Management System 1.0 allows a remote attacker to inject JavaScript via the page parameter to login.php or header.php.
Affected Software
1 affected component
Mayurik Courier Management System=1.0
Event History
Dec 7, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this XSS vulnerability?
The vulnerability ID of this XSS vulnerability is CVE-2023-48206.
2
What is the affected software version?
The affected software version is 1.0.
3
How can a remote attacker exploit this vulnerability?
A remote attacker can exploit this vulnerability by injecting JavaScript via the page parameter to login.php or header.php.
4
What is the severity rating of this vulnerability?
The severity rating of this vulnerability is medium, with a CVSS score of 6.1.
5
Is there a fix available for this vulnerability?
There is no information available about a fix for this vulnerability at the moment.