PT-2023-26500 · Unknown · Phpscriptpoint Bloodbank

Skalvin

·

Published

2023-07-23

·

Updated

2024-05-17

·

CVE-2023-3853

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions phpscriptpoint BloodBank version 1.1
Description A problem was found in the processing of the file page.php, which can lead to cross site scripting. The attack may be initiated remotely. The vendor was contacted about this issue but did not respond.
Recommendations For version 1.1, consider disabling access to the page.php file until a fix is available. Restrict access to the affected file to minimize the risk of exploitation.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-3853

Affected Products

Phpscriptpoint Bloodbank