First published: Sat Sep 30 2023(Updated: )
A vulnerability was found in Online Banquet Booking System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /mail.php of the component Contact Us Page. The manipulation of the argument message leads to cross site scripting. The attack may be launched remotely. The identifier of this vulnerability is VDB-240944.
Credit: cna@vuldb.com cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Anujk305 Online Banquet Booking System | =1.0 | |
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-5305 is medium.
CVE-2023-5305 affects the functionality of the file /mail.php of the Contact Us Page component, allowing for cross-site scripting (XSS) attacks.
To fix CVE-2023-5305, it is recommended to update Online Banquet Booking System 1.0 to a version that addresses the cross-site scripting vulnerability.
The Common Weakness Enumeration (CWE) associated with CVE-2023-5305 is CWE-79 (Cross-site Scripting).
More information about CVE-2023-5305 can be found at the following references: [link1](https://vuldb.com/?ctiid.240944) [link2](https://vuldb.com/?id.240944)