CVE-2023-6775: CodeAstro POS and Inventory Management System item_con cross site scripting
A vulnerability was found in CodeAstro POS and Inventory Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /item/itemcon. The manipulation of the argument itemname leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247911.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-6775?
CVE-2023-6775 is classified as problematic due to its potential for cross-site scripting attacks.
How do I fix CVE-2023-6775?
To fix CVE-2023-6775, ensure that proper input validation and sanitization are implemented for the item_name parameter.
What software is affected by CVE-2023-6775?
CVE-2023-6775 affects CodeAstro POS and Inventory Management System version 1.0.
What type of vulnerability is CVE-2023-6775?
CVE-2023-6775 is a cross-site scripting (XSS) vulnerability.
Can CVE-2023-6775 be exploited remotely?
Yes, CVE-2023-6775 can potentially be exploited remotely by manipulating the item_name argument.