HTML Injection Vulnerability in PHP Scripts Mall Consumer Reviews Script 4.0.3
CVE-2018-20627

5.4MEDIUM

What is CVE-2018-20627?

The PHP Scripts Mall Consumer Reviews Script 4.0.3 is susceptible to an HTML injection vulnerability through the search box feature. This flaw allows malicious users to inject arbitrary HTML code, potentially leading to destructive actions such as defacement or data manipulation. Web administrators must ensure their systems are updated and implement necessary security practices to mitigate this vulnerability.

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.