Cross Site Scripting in GaatiTrack Courier Management System
CVE-2023-48206
6.1MEDIUM
What is CVE-2023-48206?
The GaatiTrack Courier Management System version 1.0 is susceptible to a Cross Site Scripting (XSS) vulnerability. An attacker can exploit this flaw by injecting malicious JavaScript code through the 'page' parameter in the login.php or header.php files, potentially leading to unauthorized actions or data exposure for users accessing the affected systems.