Cross-Site Scripting Vulnerability in Hostel Management System by Hostel Management Solutions
CVE-2023-36376
4.8MEDIUM
What is CVE-2023-36376?
A Cross-Site Scripting (XSS) vulnerability exists in version 2.1 of the Hostel Management System, permitting attackers to execute arbitrary web scripts or HTML by injecting a crafted payload into the add course section. This can lead to compromised user sessions, unauthorized actions, and the exposure of sensitive information.