A flaw has been found in itsourcecode University Management System 1.0. Impacted is an unknown function of the file /admin_single_student_update.php. This manipulation of the argument st_name causes cross site scripting.
The attack may be initiated remotely. The exploit has been published and may be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 1
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Angeljudesuarez University_Management_System
cpe:2.3:a:angeljudesuarez:university_management_system:1.0:*:*:*:*:*:*:*
|
— | — |