PT-2022-26728 · Unknown · Food Ordering Management System

Oudaorui

·

Published

2022-11-07

·

Updated

2024-09-07

·

CVE-2022-43046

CVSS v3.1

4.8

Medium

VectorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Food Ordering Management System version 1.0
Description The issue is related to a cross-site scripting (XSS) vulnerability found in the /foms/place-order.php component. This type of vulnerability allows attackers to inject malicious scripts into content from otherwise trusted websites.
Recommendations For Food Ordering Management System version 1.0, consider disabling the /foms/place-order.php component until a patch is available to prevent potential exploitation of the XSS vulnerability. Restrict access to this component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-43046

Affected Products

Food Ordering Management System