Cross Site Scripting Flaw in phpgurukul Online Marriage Registration System
CVE-2020-23466
5.4MEDIUM
Key Information:
- Vendor
- PHPgurukul
- Vendor
- CVE Published:
- 19 August 2022
Summary
A Cross Site Scripting (XSS) vulnerability has been identified in the phpgurukul Online Marriage Registration System 1.0. This flaw enables attackers to execute arbitrary code through the manipulation of the wzipcode input field. When exploited, this vulnerability poses significant risks by allowing the execution of malicious scripts, potentially jeopardizing user data and the integrity of the application.
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved