Cross Site Scripting Flaw in phpgurukul Online Marriage Registration System
CVE-2020-23466

5.4MEDIUM

Key Information:

Vendor
PHPgurukul
Vendor
CVE Published:
19 August 2022

Summary

A Cross Site Scripting (XSS) vulnerability has been identified in the phpgurukul Online Marriage Registration System 1.0. This flaw enables attackers to execute arbitrary code through the manipulation of the wzipcode input field. When exploited, this vulnerability poses significant risks by allowing the execution of malicious scripts, potentially jeopardizing user data and the integrity of the application.

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.