Stored Cross-Site Scripting Vulnerability in Zoo Management System by Unknown Vendor
CVE-2023-41614
4.8MEDIUM
What is CVE-2023-41614?
A vulnerability exists in the Add Animal Details function of the Zoo Management System version 1.0, enabling attackers to inject arbitrary web scripts or HTML into the Description of Animal parameter. This stored XSS flaw allows malicious users to execute scripts when an unsuspecting administrator or user accesses the affected areas, potentially compromising sensitive data and leading to further attacks.