CVE-2023-6767: SourceCodester Wedding Guest e-Book add-guest.php cross site scripting
A vulnerability, which was classified as problematic, was found in SourceCodester Wedding Guest e-Book 1.0. This affects an unknown part of the file /endpoint/add-guest.php. The manipulation of the argument name leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-247899.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6767?
CVE-2023-6767 is classified as problematic, indicating a significant risk of exploitation.
How do I fix CVE-2023-6767?
To fix CVE-2023-6767, validate and sanitize user inputs in the /endpoint/add-guest.php file to prevent cross-site scripting attacks.
What type of attack does CVE-2023-6767 enable?
CVE-2023-6767 enables cross-site scripting (XSS) attacks due to improper handling of user inputs.
Which software versions are affected by CVE-2023-6767?
CVE-2023-6767 affects SourceCodester Wedding Guest e-Book version 1.0.
What file is associated with CVE-2023-6767?
CVE-2023-6767 is associated with the file /endpoint/add-guest.php.