Cross Site Scripting Vulnerability in Rail Pass Management System by DiliLearngent
CVE-2023-31934
4.8MEDIUM
What is CVE-2023-31934?
The Rail Pass Management System version 1.0 contains a Cross Site Scripting (XSS) vulnerability in the adminname parameter of admin-profile.php. This flaw allows remote attackers to inject malicious scripts, potentially leading to unauthorized access to sensitive information. Proper validation and sanitization of user inputs are crucial to mitigate such vulnerabilities.