PT-2019-15398 · Sourcecodester · Sourcecodester Restaurant Management System

Publicado

2019-10-24

·

Atualizado

2019-10-28

·

CVE-2019-18415

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Sourcecodester Restaurant Management System version 1.0
Description The issue allows for cross-site scripting (XSS) attacks through the "send a message" screen. This means an attacker could potentially inject malicious scripts into the website, affecting users who interact with the vulnerable page.
Recommendations For Sourcecodester Restaurant Management System version 1.0, consider disabling the "send a message" feature until a patch is available to prevent XSS attacks. Restrict access to this feature to minimize the risk of exploitation.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-18415

Produtos afetados

Sourcecodester Restaurant Management System