First published: Wed Dec 13 2023(Updated: )
A vulnerability, which was classified as problematic, was found in SourceCodester Wedding Guest e-Book 1.0. This affects an unknown part of the file /endpoint/add-guest.php. The manipulation of the argument name leads to cross site scripting. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-247899.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-6767 is classified as problematic, indicating a significant risk of exploitation.
To fix CVE-2023-6767, validate and sanitize user inputs in the /endpoint/add-guest.php file to prevent cross-site scripting attacks.
CVE-2023-6767 enables cross-site scripting (XSS) attacks due to improper handling of user inputs.
CVE-2023-6767 affects SourceCodester Wedding Guest e-Book version 1.0.
CVE-2023-6767 is associated with the file /endpoint/add-guest.php.