PT-2021-24080 · Unknown · Bus Pass Management System

Published

2021-12-16

·

Updated

2023-11-14

·

CVE-2021-44317

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: Bus Pass Management System version 1.0
Description: The issue is related to a Stored Cross-site scripting vulnerability. Parameters pagedes and About Us are affected.
Recommendations: For Bus Pass Management System version 1.0, consider restricting access to the parameters pagedes and About Us to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2021-44317

Affected Products

Bus Pass Management System