A flaw has been found in PHPGurukul Daily Expense Tracker System 1.1. This issue affects some unknown processing of the file /dets/includes/sidebar.php. Executing a manipulation of the argument FullName can lead to cross site scripting.
The attack can be executed remotely. The exploit has been published and may be used.
Attack Parameters
Impact Assessment
CVSS Vector v4.0